qbo
Warn
Audited by Snyk on Mar 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The qbo skill is explicitly a QuickBooks Online CLI for managing accounting entities and includes commands to create and record payments (e.g., "qbo create payment", "Record a payment against an invoice") and references QuickBooks Online and Payments in the auth setup. It requires OAuth credentials and supports sandbox vs production for payment functionality. These are specific, purpose-built financial operations (creating invoices/payments and interacting with Payments), not generic tooling, so it grants direct financial execution capability.
Audit Metadata