lightspeed-ecom
Warn
Audited by Snyk on Apr 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is an integration for Lightspeed eCom (an e‑commerce platform) and explicitly mentions "process payments" and resources such as Order and Payment Method. It exposes pre-built actions and a proxy that supports POST/PUT/PATCH/DELETE to the Lightspeed eCom API, and therefore can be used to create/modify orders and payment-related resources (e.g., charge/refund/payment-method operations). This is a domain-specific integration for online commerce/payments rather than a generic tool, so it is explicitly capable of financial execution.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata