skills/googlecloudplatform/recaptcha-enterprise-mobile-sdk/integrating-recaptcha-transaction-defense/Snyk
integrating-recaptcha-transaction-defense
Warn
Audited by Snyk on Mar 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly built around Payment Service Providers (PSPs). It references and provides PSP-specific integrations and templates (Stripe and Adyen), instructs injecting code into payment processing routes, calling createAssessment before authorizing charges, handling PSP webhooks (e.g., charge.dispute.created), storing transactionId in PSP metadata, and running test transactions in Stripe Test Mode. These are concrete, payment-gateway-specific actions rather than generic tooling, so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata