sendowl
Warn
Audited by Snyk on Apr 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is an integration with SendOwl — a commerce platform that explicitly handles selling digital products and payment processing (orders, subscriptions, customers, discounts). The skill exposes Membrane actions and a proxy that can call SendOwl API endpoints with full HTTP methods (POST/PUT/PATCH/DELETE), which enables creating/updating orders, subscriptions, refunds, and other payment-related operations. Because SendOwl's primary purpose includes moving money and the skill provides explicit, writable API access to those capabilities, this qualifies as direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata