invoicing

Warn

Audited by Snyk on Aug 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly includes a "Programmatic path via Stripe" with SDK version and sample code calling stripe.invoiceItems.create, stripe.invoices.create, stripe.invoices.finalizeInvoice and stripe.invoices.sendInvoice, and references the invoice.paid webhook and collection_method (charge_automatically). This is a specific payment-gateway integration that can create and send billable charges — i.e., direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 6, 2026, 09:38 PM
Issues
1
Security Audit — snyk — invoicing