using-mobile-native-capabilities
Warn
Audited by Snyk on Jun 19, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill explicitly includes a "Payments" mobile capability that is designed to take payments (Apple Pay / Google Pay). The docs and examples show building a payment request, invoking the Payments service, and returning a transaction id — i.e., executing a financial transaction. This is a specific, payment-focused API (not a generic tool), so it grants direct financial execution authority.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata