moonclerk

Warn

Audited by Snyk on Mar 11, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). Yes. This skill is a dedicated MoonClerk integration (a payment/subscription platform) and explicitly exposes payment-related resources and actions: Payments, Refunds, Payment Methods, Subscriptions, Plans, etc. It also allows running MoonClerk API calls (via Membrane CLI/proxy) with authenticated access, which enables creating charges, issuing refunds, and managing payment methods directly. Because it is specifically designed for a payment gateway and includes endpoints that move or manage money, it meets the Direct Financial Execution criteria.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 11, 2026, 09:24 PM
Issues
1