daily-rhythm

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly integrates with Stripe: the install requirements include the stripe library, setup instructs creating a .env.stripe with STRIPE_API_KEY (example: sk_live_...), and there is a script sync-stripe-arr.py that queries Stripe to calculate ARR from active subscriptions. This is a specific payment-gateway API integration (Stripe), not a generic tool, so it meets the criteria for direct financial execution capability (payment gateway access).
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 03:14 AM