treezor
Warn
Audited by Snyk on Apr 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill is explicitly for Treezor, a Banking-as-a-Service payment platform, and exposes domain-specific entities/actions such as Wallet, Transaction, Transfer, Payin, Payout, Card, etc. It instructs using the Membrane CLI to discover and run actions (membrane action run ... --input '{"..."}'), which can invoke Treezor operations programmatically. Because the skill is specifically designed to interact with payment infrastructure and can execute payment/transfer-related actions, it grants direct financial execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata