freee-api-skill

Warn

Audited by Snyk on Apr 8, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly for interacting with the freee accounting/HR/invoice API via MCP and documents direct API operations (freee_api_post/put/patch/delete, service endpoints like accounting/invoice/hr). The skill surface and recipes include creating/registering transactions (取引登録), expense applications (経費申請), payroll/pay slips (給与明細), and invoices (請求書・見積書) — i.e., APIs intended to create and modify financial records and trigger financial workflows. This is a specific financial integration (not a generic browser/tool) capable of executing financial-related operations via API, so it constitutes direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 8, 2026, 03:02 AM
Issues
1