Stripe Connect Marketplace Sync
Warn
Audited by Snyk on Mar 29, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly and specifically built around Stripe Connect, a payment gateway. It describes creating PaymentIntents with transfer_data, direct/destination/separate charges, automatic payout splitting, transfer reversals, refunds via the Refunds API, account onboarding via Account Links, and payout scheduling — all using the stripe-node SDK to perform API calls. These are direct payment operations (moving funds, splitting payouts, reversing transfers, and onboarding bank accounts), which fit the "Payment Gateways" category of direct financial execution.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata