plaid

Warn

Audited by Snyk on Mar 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is a dedicated Plaid CLI for interacting with the Plaid banking API: linking institutions, managing access tokens, listing accounts/balances and querying transactions. Plaid is explicitly a banking API (listed in the core rule), and the skill is specifically designed for financial data and account access (including tokens/credentials). Even though the examples focus on reads (balances/transactions), this is a purpose-built banking integration (not a generic tool) and thus meets the "Banking APIs (Plaid...)" criterion for direct financial execution authority.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 1, 2026, 05:17 AM