flutterwave

Warn

Audited by Snyk on Apr 30, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). This skill is an integration with the Flutterwave payment gateway and explicitly exposes money-moving operations. The documentation lists actions such as Create Transfer (send money to a bank account or mobile wallet), Refund Transaction (issue refunds), Create Beneficiary, Get Wallet Balance, Create Payment Plan, and Listings/management of transactions, settlements, subaccounts, virtual accounts, etc. It uses Membrane CLI to authenticate and run actions, enabling the agent to call these specific payment/transfer APIs. These are explicit financial execution capabilities (not generic tools), so it meets the "Direct Financial Execution" criteria.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 30, 2026, 11:07 PM
Issues
1
Security Audit — snyk — flutterwave