azure-cost-management

Warn

Audited by Snyk on Mar 8, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly about Azure billing and contains programmatic/administrative actions that can change payment settings and initiate purchases. It references APIs and runnable patterns to "programmatically create subscriptions" (REST/CLI/PowerShell), "manage Azure subscription payment methods and cards", "configure payment methods / set up payment by wire transfer", "use reservation APIs" and pages about buying/prepaying reservations, exchanging/refunding reservations, and creating/updating Cost Management budgets via ARM/Bicep. Those are specific, actionable financial/billing operations (updating payment methods, initiating purchases/prepayments, and programmatic budget configuration), not generic tooling — therefore it grants direct financial execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 8, 2026, 08:31 AM