okra
Warn
Audited by Snyk on Apr 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). This skill integrates Okra — a Plaid-like banking data API for African banks — via the Membrane connector and CLI. It exposes explicit banking data actions (balance, transactions, identity, income, spending) and a proxy to call Okra endpoints with authenticated requests. Because Okra is a banking API (listed in the criteria) and the connector provides direct access to bank-related endpoints (not just generic browsing or HTTP), it meets the “specific financial operations” definition and therefore counts as direct financial execution authority risk.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata