moonpay-x402

Warn

Audited by Snyk on Mar 21, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill explicitly performs crypto payment operations: it detects 402 Payment Required responses, builds and signs a payment transaction with a local wallet, and retries requests with payment proof. The CLI requires a local wallet with USDC and supports payments on Solana and Base — i.e., it constructs and sends on-chain payments. This is a specific financial execution capability (crypto wallet transactions), not a generic tool, so it meets the Direct Financial Execution criteria.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 21, 2026, 10:25 PM
Issues
1