proxy-pay-mcp
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly for agent payments and includes specific, payment-oriented APIs and tools: proxy.intents.create (to create payment intents), proxy.intents.request_approval/proxy.intents.approval_status, proxy.cards.get_sensitive (access to card PAN/CVV given an intent), proxy.balance.get, and transaction listing/receipt attachment endpoints. The description even states "Proxy MCP server integration for agent payments" and "Use MCP tools to create intents, issue cards within policy, and track transactions," and supports autonomous agent tokens. These are specific financial execution capabilities (creating payment intents, accessing card data, tracking/attaching receipts), not generic tooling. Therefore it grants Direct Financial Execution Authority.
Audit Metadata