ckBTC Integration

Warn

Audited by Snyk on Feb 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly implements crypto financial operations: it integrates with ckBTC ledger and minter canisters and exposes direct money-moving APIs. It includes get_btc_address (deposit address generation), update_balance (detects BTC deposits and mints ckBTC), icrc1_transfer (send ckBTC), icrc2_approve + retrieve_btc_with_approval (approve and withdraw/burn ckBTC to send on-chain BTC). It also documents fees, minimum withdrawal, and uses real canister IDs — i.e., this is specifically designed to move/value and execute cryptocurrency transactions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 27, 2026, 02:37 AM