paypro
Warn
Audited by Snyk on May 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly for a payroll/payments integration (PayPro) and exposes entities like "Payment" and "Invoice". It uses the Membrane CLI to create and run actions against a PayPro connection (membrane action run ... --input ...), which can be used to perform API calls that create payments/invoices or otherwise move funds. This is a purpose-built financial integration (payroll/payments), not a generic tool, so it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata