better-auth

Warn

Audited by Snyk on Jun 18, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The documentation explicitly lists and documents a "Stripe" plugin ("Payment and subscription management" and "Stripe enhancements" in v1.4.10). That is a specific payment-gateway integration (Stripe), which constitutes direct financial execution capability under the policy (payment gateway APIs/functions).

MEDIUM W021: Hidden or invisible Unicode characters detected (potential obfuscation or prompt injection).

  • Hidden Unicode characters detected (1 type(s) found)

Issues (2)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

W021
MEDIUM

Hidden or invisible Unicode characters detected (potential obfuscation or prompt injection).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 18, 2026, 01:40 AM
Issues
2
Security Audit — snyk — better-auth