chargeover
Warn
Audited by Snyk on Apr 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is a dedicated ChargeOver integration (a subscription billing/payment platform) and exposes explicit payment-related actions such as "Make Payment", "Create Invoice", "Create Subscription", and other invoice/transaction management operations. It also allows direct calls to the ChargeOver API (via Membrane proxy) to perform POST/PUT/DELETE requests. These are specific, purpose-built financial operations (payment collection and invoice/transaction management), not generic tooling, so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata