coterie-insurance
Warn
Audited by Snyk on Apr 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is a dedicated integration for Coterie Insurance and explicitly lists "Billing" and "Payment Method" as core resources. It exposes Membrane actions and a proxy that can run arbitrary HTTP methods (POST/PUT/PATCH/DELETE) against the Coterie API with authenticated credentials. That combination — a domain-specific connector for an insurance platform plus the ability to invoke transactional endpoints (and modify payment methods/billing records) — constitutes explicit financial execution capability (i.e., it can create/modify payments or payment methods via the API).
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata