quickbooks-online-api

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly an integration guide for the QuickBooks Online API and includes concrete, actionable operations that create and apply monetary transactions: examples and endpoints for creating Invoice and Payment entities, endpoints like POST /v3/company/{realmId}/payment, workflows to "Record Payment Against Invoice", "Create and Send Invoice", "Apply payment to multiple invoices", and code samples that build and submit payment payloads. These are specific, finance-focused APIs for moving/recording money within accounting systems (direct transaction creation and payment application), not generic browser or HTTP tooling. Therefore it grants direct financial execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 09:24 PM