intuit-enterprise-suite

Warn

Audited by Snyk on Apr 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). This skill is explicitly an accounting connector (Apideck Accounting) for Intuit Enterprise Suite and exposes full CRUD on financial objects including "payments", "bill-payments", invoices, bills, ledger accounts, and journal entries. It specifically teaches the agent to "create an invoice in Intuit Enterprise Suite" and "reconcile payments" and provides a Proxy to call downstream Intuit endpoints with injected auth. These are specific, purpose-built financial operations (including creating/handling payments), not generic browser automation or a generic HTTP tool — therefore it grants direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 27, 2026, 05:58 PM
Issues
1
Security Audit — snyk — intuit-enterprise-suite