NYC

smart-contract-generator

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly a crypto/blockchain tool: it generates Solidity contracts (ERC‑20/721/1155), includes payable mint functions, owner withdraw() functions that transfer ether, and deployment scripts/hardhat config that use RPC URLs and a PRIVATE_KEY for signing and sending transactions. Those elements (smart contracts that accept/transfer funds, transaction signing via private key, and network RPC/deploy scripts) are specific crypto/financial execution capabilities (moving funds on-chain), not generic tooling.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 12:29 AM