basiq
Warn
Audited by Snyk on Apr 2, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly integrates with Basiq, a banking/open-finance platform that provides access to bank accounts and payments. It exposes concrete commands to run connector actions (membrane action run) and to proxy arbitrary HTTP requests to the Basiq API (membrane request ... with -X POST/PUT/DELETE and JSON body). Those capabilities are specific to a banking/financial API (not a generic browser or HTTP helper) and can be used to initiate payments or other account-managing operations. Therefore this skill grants direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata