x402-creation

Warn

Audited by Snyk on Feb 21, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). This skill explicitly handles on-chain payments and payouts in USDC on Base and Solana. It defines protocol steps where the "Agent submits USDC transfer to specified address," requires wallet signatures/private key access, and provides a withdraw_funds tool to "Trigger a payout to your registered wallet." It also provisions monetized API routes with per-request USDC pricing and automated daily withdrawals. These are specific financial operations (crypto transfers, withdrawals, and payout management), not generic tooling, so it grants direct financial execution authority.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 21, 2026, 08:53 AM