Stripe Connect Marketplace Sync

Warn

Audited by Snyk on Mar 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly and specifically built around Stripe Connect, a payment gateway. It describes creating PaymentIntents with transfer_data, direct/destination/separate charges, automatic payout splitting, transfer reversals, refunds via the Refunds API, account onboarding via Account Links, and payout scheduling — all using the stripe-node SDK to perform API calls. These are direct payment operations (moving funds, splitting payouts, reversing transfers, and onboarding bank accounts), which fit the "Payment Gateways" category of direct financial execution.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 29, 2026, 04:34 AM
Issues
1