polar
Warn
Audited by Snyk on Mar 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly a monetization/payment SDK (Polar) with concrete APIs for creating products, creating checkout sessions (polar.checkouts.create), handling subscription and order webhooks, and managing subscriptions/license activations. It is specifically designed to facilitate payments, subscriptions, and product sales — i.e., to move money — not a generic tool. These are payment gateway capabilities analogous to Stripe integration, so it grants direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata