lemon-squeezy
Warn
Audited by Snyk on Apr 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is a direct integration with Lemon Squeezy, an e-commerce/payments platform, via Membrane. The documented actions include Create Checkout (creates a checkout link to process purchases), Cancel Subscription (affects billing/subscriptions), List/Retrieve Orders and other customer/subscription management actions. These are specific, payment-focused operations (i.e., a payment gateway / subscription management API), not generic tooling. With an active connection and credentials (managed by Membrane), the agent can initiate and manage payment-related operations. Therefore it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata