smart-contract-generator
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly a crypto/blockchain tool: it generates Solidity contracts (ERC‑20/721/1155), includes payable mint functions, owner withdraw() functions that transfer ether, and deployment scripts/hardhat config that use RPC URLs and a PRIVATE_KEY for signing and sending transactions. Those elements (smart contracts that accept/transfer funds, transaction signing via private key, and network RPC/deploy scripts) are specific crypto/financial execution capabilities (moving funds on-chain), not generic tooling.
Audit Metadata