returns-management
Warn
Audited by Snyk on Mar 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly includes refund execution as a core action: steps describe "issue refund from the original order", "refund to original payment method", and note that apps like Loop/Shopify/AfterShip can "automatically process the refund." It also names payment gateways (Stripe/PayPal) and references a @stripe-integration related skill. These are specific, non-generic financial operations (issuing refunds / store credit), not just generic automation or API callers, so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata