alegra

Warn

Audited by Snyk on Apr 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is a dedicated Alegra accounting/invoicing integration (specific to financial operations) and exposes explicit actions such as "Create Payment", "List Payments", "Create Invoice", "Create Bill", and a proxy to call Alegra API endpoints (with authenticated POST/PUT). These are purpose-built financial operations (not generic browser or generic HTTP tooling) that allow creating/recording payments and invoices via the API, which constitutes direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 22, 2026, 08:51 PM
Issues
1