mono
Warn
Audited by Snyk on Apr 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly integrates with Mono, a banking/financial accounts platform, via the Membrane CLI. It documents how to list and run specific Mono actions and — critically — how to proxy arbitrary requests to Mono endpoints (including HTTP methods like POST/PUT and sending JSON bodies) with authenticated credentials. These capabilities are specifically designed to interact with banking APIs and could be used to initiate transactions or manage accounts. Per the decision logic (banking APIs/direct bank integrations), this is a Direct Financial Execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata