securionpay
Warn
Audited by Snyk on Apr 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is an integration for SecurionPay, a payment-processing gateway, and explicitly exposes payment-related resources (Charges, Payouts, Subscriptions, Tokens, Customers, Checkout Sessions, etc.). It provides commands to run pre-built actions (membrane action run) and to proxy arbitrary requests to the SecurionPay API (membrane request) with HTTP methods and JSON bodies. Membrane handles auth/credential refresh so the agent can invoke API endpoints that create charges, manage payouts, subscriptions, or otherwise move money without needing user-supplied keys. This is a specific payment gateway integration intended to perform financial operations, so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata