build-supastarter-app
Warn
Audited by Snyk on Mar 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly centered on a SaaS codebase with a payments/billing subsystem and includes provider-specific payment integrations. It references a payments package, "billing config, provider abstraction, Stripe implementation", "payments/stripe-provider.md", "checkout-and-portal-flow.md", "webhook-flow.md", and task guides for "integrate-payments" and "checkout flows" — all specific payment gateway functionality. These are not generic tools; they are explicit payment gateway integrations (Stripe) and billing flow implementations capable of executing financial transactions.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata