unbox
Warn
Audited by Snyk on Apr 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).
- Direct money access detected (high risk: 1.00). The skill integrates with "Unbox," a SaaS whose explicit purpose is subscription billing, customer billing management, and recurring-revenue analytics. Although the prompt documents using the Membrane CLI to discover and run connector "actions" rather than listing specific endpoints, the integration is explicitly for billing/subscription management — a domain whose actions typically include creating charges, invoices, refunds, and other payment-related operations. Because the tool is specifically designed for financial/billing operations (not a generic browser or HTTP tool), it presents Direct Financial Execution capability.
Issues (1)
W009
MEDIUMDirect money access capability detected (payment gateways, crypto, banking).
Audit Metadata