payment-integration

Warn

Audited by Snyk on Mar 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly designed for payment processing: it integrates Stripe, PayPal, and other payment processors, implements checkout flows, subscription billing, webhook handling, server-side API calls, refunds/error/retry logic, and PCI-compliant payment handling. Those are specific payment gateway and billing operations (moving money, creating/handling transactions, refunds, subscriptions), not generic tooling — therefore it grants direct financial execution capability.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 1, 2026, 11:28 AM