AGENT LAB: SKILLS

app-builder

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly lists a "nextjs-saas" template with "Next.js + Stripe" in the templates table. Stripe is a specific payment gateway (explicitly named), which meets the criterion for containing a payment integration tool. While the skill is an app scaffolding/orchestrator rather than a payments runtime, the presence of a Stripe-focused template indicates the skill is specifically designed to produce apps that integrate a payment gateway—so it exposes direct financial execution capability risk. No other payment/crypto/banking APIs are listed.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 08:09 PM