gcp-resource-optimizer

Warn

Audited by Snyk on Apr 19, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is specifically and explicitly about cloud cost management and billing control for GCP. It includes concrete, non-generic billing operations such as "gcloud billing accounts describe ACCOUNT_ID" and an explicit command to create/update budgets: "gcloud billing budgets create --billing-account=BILLING_ACCOUNT_ID --display-name=... --budget-amount=100USD ...". It also gives instructions for credit burn rate planning (calculating required daily spend) and enabling billing export. These are targeted, provider-specific billing controls (budget creation/management) rather than generic tooling, so it grants direct financial execution authority over cloud billing settings.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 19, 2026, 03:24 AM
Issues
1