Stripe Financial Connections

Security checks across malware telemetry and agentic risk

Overview

This skill appears legitimate, but it gives an agent broad authenticated access to sensitive Stripe bank-connection data without enough explicit guardrails.

Install only if you are comfortable letting an agent operate through a Membrane-connected Stripe Financial Connections account. Use the least-privileged Stripe and Membrane permissions available, prefer prebuilt Membrane actions, review any raw proxy request before it runs, and require explicit confirmation before broad data retrieval, exporting, or any write/delete operation.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill explicitly facilitates access to customers' financial data and also supports raw proxy requests, but it does not instruct the agent to obtain explicit user authorization, minimize retrieved data, or confirm before accessing or transmitting sensitive records. In a financial-data context, this omission can enable over-collection or unintended disclosure of bank/account information even when the underlying API access is legitimate.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal