letsgo
Warn
Audited by Snyk on Mar 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly detects and handles payment gateways (mentions Stripe, Paddle, Lemon Squeezy) and includes a dedicated "Payments" checklist with specific, actionable items: switch Stripe to live mode, put live API keys in production env vars, update webhook endpoint and signing secret, and complete a test purchase in production. These are specific payment-gateway configuration and execution steps (directly tied to moving money), not generic tooling, so it meets the criteria for Direct Financial Execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata