jupiter-vrfd

Warn

Audited by Snyk on Apr 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly implements a paid on-chain verification flow: it crafts, signs, and executes a payment transaction to pay 1000 JUP via Jupiter's API. The intent router includes endpoints for "Craft payment transaction" and "Sign and execute payment", and the usage guidance instructs agents to "craft and sign the submission payment transaction" and "execute the submission flow." These are specific crypto transaction/payment actions (Solana/JUP), not generic browser or HTTP tooling, so it grants direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 17, 2026, 06:31 PM
Issues
1