jupiter-vrfd
Warn
Audited by Snyk on Apr 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly implements a paid on-chain verification flow: it crafts, signs, and executes a payment transaction to pay 1000 JUP via Jupiter's API. The intent router includes endpoints for "Craft payment transaction" and "Sign and execute payment", and the usage guidance instructs agents to "craft and sign the submission payment transaction" and "execute the submission flow." These are specific crypto transaction/payment actions (Solana/JUP), not generic browser or HTTP tooling, so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata