churn-prevention

Warn

Audited by Snyk on Aug 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly references payment gateways and provider-specific payment operations: it names Stripe, Chargebee, Paddle, Recurly, and Braintree as billing providers (SKILL.md:19), mentions card updater services and pre-dunning/payment recovery techniques (SKILL.md:270, SKILL.md:292-299), calls out Stripe Smart Retries (SKILL.md:290) and lists provider-specific capabilities (SKILL.md:392). It also lists the stripe CLI for "Subscription management, dunning config, payment retries" (SKILL.md:402). These are specific payment gateway integrations and payment-recovery controls (i.e., operations that can configure or trigger charging/retries), which fit the definition of Direct Financial Execution authority.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 1, 2026, 06:53 PM
Issues
1
Security Audit — snyk — churn-prevention