payram-stablecoin-payments

Warn

Audited by Snyk on Feb 28, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly and specifically designed for moving and managing money via crypto. It documents a self-hosted payment gateway for accepting USDT/USDC, includes concrete APIs and SDK calls for creating payments (POST /api/v1/payment), webhook payloads for payment confirmations, unique deposit address generation, smart-contract sweeps to cold wallets, instructions to deploy sweep contracts, and mentions payout functionality ("payram-payouts" — Send crypto payouts). These are specific crypto/blockchain payment and wallet operations (deposit addresses, txHash, sweeps, cold wallets), not generic tooling, and therefore constitute Direct Financial Execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 28, 2026, 08:25 AM