supabase-vercel-shop
Warn
Audited by Snyk on Mar 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is an e-commerce platform explicitly built around Stripe: the tech stack lists "Payments | Stripe", the setup checklist asks about existing/creating a Stripe account, phases include "Shop Integration: Connect Stripe" and "Stripe Webhooks", placeholders include {{STRIPE_ACCOUNT}}, and currency/checkout guidance specifically references Stripe. These are concrete, payment-gateway-specific integrations (not generic tooling), which enable sending/processing payments and webhook handling. Therefore it grants Direct Financial Execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata