maravilla-workflows

Warn

Audited by Snyk on Apr 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill's documentation includes explicit examples calling payment gateway APIs (e.g., stripe.charges.create and stripe.refunds.create in the saga/compensation pattern and a charge-card example). Those are concrete payment operations (charging and refunding via Stripe), which qualify as direct financial execution capability under the rule for Payment Gateways.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 29, 2026, 01:59 PM
Issues
1