payram-checkout-integration

Warn

Audited by Snyk on Feb 21, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly and specifically designed to perform financial operations: it is a payment gateway integration for crypto checkout. It documents SDK methods (e.g., payram.payments.initiatePayment), HTTP API endpoints (POST /api/v1/payment with API-Key header), payment creation/redirect flow, status polling, transaction hashes, and even related skills for payouts and stablecoin/bitcoin payments. These are concrete APIs/functions whose primary purpose is to create and manage payments (and send payouts), not generic tooling, so it grants direct financial execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 21, 2026, 01:41 PM