gpc-monetization
Warn
Audited by Snyk on Apr 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly a monetization/Google Play billing tool. It includes commands that directly change billing and money-related state: issuing refunds (gpc purchases orders refund), cancelling/revoking subscriptions (gpc purchases subscription cancel*, revoke), migrating subscribers to new prices (subscriptions base-plans migrate-prices), activating/deactivating base plans/offers (which affect availability and billing), creating/updating pricing and in‑app products, and acknowledging/consuming purchases. These are specific, finance-related operations that can move money or change charges via the Google Play payments system, so it grants direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata