finix

Warn

Audited by Snyk on Apr 2, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is an integration with Finix, a payment-processing platform, and explicitly exposes payment-related operations: Payment, Refund, Payout, Settlement. It documents running actions (membrane action run) and proxying arbitrary requests to the Finix API (membrane request /path/to/endpoint) with authenticated calls. Those capabilities map directly to Payment Gateways and actions that can send transactions, issue refunds, and trigger payouts—i.e., direct financial execution.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 2, 2026, 01:40 PM
Issues
1