pretix

Warn

Audited by Snyk on May 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). Pretix is a ticket-sales platform that explicitly handles selling tickets and "processing payments" and exposes Order and Invoice objects. This skill is a dedicated Pretix integration (not a generic browser or HTTP tool) using Membrane actions to list and run actions against a Pretix connection; those actions can include creating/managing orders and invoices and thus initiating or modifying payment-related operations (e.g., capture/refund/order payment flows). Because the integration is specifically for a payments-capable system (ticket sales/payments), it constitutes direct financial execution capability.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 4, 2026, 04:24 AM
Issues
1
Security Audit — snyk — pretix