bc-checkout

Warn

Audited by Snyk on Mar 31, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W009: Direct money access capability detected (payment gateways, crypto, banking).

  • Direct money access detected (high risk: 1.00). The skill is explicitly a BigCommerce checkout customization tool with direct checkout and payments functionality. It documents SDK methods like submitOrder and server-side endpoints such as POST /v3/checkouts/{id}/orders and, critically, POST /v3/payments (Payments API) to process payments. These are specific, purpose-built APIs for creating orders and executing payment transactions, i.e., moving money.

Issues (1)

W009
MEDIUM

Direct money access capability detected (payment gateways, crypto, banking).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 31, 2026, 06:10 AM
Issues
1