quickbooks
Warn
Audited by Snyk on Apr 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is a dedicated QuickBooks integration (accounting/financial software) exposing explicit actions such as Create Payment, Create Bill, Bill Payment, Transfer, Create Invoice, Create Purchase Order, etc. It uses Membrane to run those actions programmatically (membrane action run ... --input '{...}'), with auth handled server-side — permitting an agent to create/record financial transactions and bills. This is a specific financial operations API (not a generic tool), so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata