marin-software
Warn
Audited by Snyk on Apr 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is a dedicated Marin Software integration (an ad-management platform) exposing actions and direct API proxying via Membrane. Marin's API surface includes campaign/account operations such as updating campaign budgets and settings that control ad spend. The prompt explicitly documents running discrete Marin actions and proxy requests (membrane action run, membrane request) with authenticated access — not just generic browser automation or a general HTTP tool. Because it is a specific integration for managing advertising campaigns (including the capability to modify campaign data and thus ad budgets/spend), it qualifies as direct financial execution capability under the "Managing Ad Spend Budgets" rule.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata