cairo-auditor

Warn

Audited by Snyk on May 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly includes crypto/blockchain transaction capabilities: the Starknet.js example constructs an Account with an address and PRIVATE_KEY signer, creates a Contract with providerOrAccount set to that account, and performs a state-changing invoke (contract.invoke) and waits for the transaction via provider.waitForTransaction. This demonstrates signing and submitting on-chain transactions (wallet signing/execution) and therefore provides direct blockchain execution authority.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 27, 2026, 01:33 PM
Issues
1
Security Audit — snyk — cairo-auditor