nav-sop
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The SOP creator skill includes explicit, actionable Stripe payment-integration content: code samples that instantiate the Stripe client, create paymentIntents (stripe.paymentIntents.create), webhook handling, .env secrets, and test curl commands to create payments. Those are concrete Payment Gateway operations (Stripe) that show how to send transactions, so the skill contains explicit financial-execution capabilities.
Audit Metadata