aomi-build

Warn

Audited by Snyk on May 13, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly designed to scaffold execution-oriented apps that perform crypto/transactional operations. It references exchange and swap apps (apps/binance, apps/oneinch), multi-step flows "quote → approval → swap", and host interop functions for signing/submitting transactions (stage_tx, run_tx, simulate_batch, commit_tx, commit_eip712) including raw tx payloads ("raw: 0x...") and EIP-712 signing. These are specific crypto/transaction APIs and wallet signing/commit operations — i.e., direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 13, 2026, 10:26 AM
Issues
1