Book a 30-minute demo →
Skill scan report

agents-pay

View on GitHub
49 Medium This skill sends sensitive values to an external host. Automated analysis flagged 3 additional risk patterns.

What this skill does

The skill is a payment processing tool for AWS AgentCore, handling payment sessions and processing payments with security checks and policy enforcement.

github/aws - Server-Side Request Forgery - 2.3k stars

ThreatsServer-Side Request Forgery Data Exfiltration

Threat analysis

Server-Side Request Forgery3 findings
Data Exfiltration2 findings

Skill info

Nameaws/agents-pay
Registrygithub
Versione2588f4
PURLpkg:github/aws/agent-toolkit-for-aws@e2588f4?skill=agents-pay
Stars2.3k

Assessments (5)

Server-Side Request Forgery3 findings HIGH
HIGH

Server-Side Request Forgery via local-llm-review

packages/openclaw/test/security.test.mjs

169.254.169.254 is used, which is a known metadata service IP address and could be used for SSRF attacks.
HIGH

Server-Side Request Forgery via local-llm-review

scripts/test_x402_policy.py

169.254.169.254 is used, which is a known metadata service IP address and could be used for SSRF attacks.
HIGH

Server-Side Request Forgery via local-llm-review

scripts/x402_policy.py

169.254.169.254 is used, which is a known metadata service IP address and could be used for SSRF attacks.
Data Exfiltration2 findings HIGH
HIGH

Data Exfiltration via local-llm-review

scripts/agents_pay_admin.py

os.environ is used, which could potentially expose environment variables to the agent.
HIGH

Data Exfiltration via local-llm-review

scripts/test_x402_policy.py

dict(os.environ) is used, which could potentially expose environment variables to the agent.

Badge

Add the Anomity scan badge for agents-pay to your README.

Anomity Skill Check badge

Markdown
[![Anomity Skill Check](https://anomity.ai/skills/badge.svg)](https://anomity.ai/skills/github/aws/agents-pay/)
HTML
<a href="https://anomity.ai/skills/github/aws/agents-pay/"><img src="https://anomity.ai/skills/badge.svg" alt="Anomity Skill Check"></a>
Image URL
https://anomity.ai/skills/badge.svg

How Anomity governs this at runtime

Scan-time vetting tells you what a skill says it will do. Anomity's Endpoint Sensor sees what agents actually do: it discovers skills alongside every other AI artifact on the endpoint, and runtime governance can allow, deny, or log the tool calls a skill triggers. Policy violations route to your SIEM, Slack, email, or Jira, backed by a queryable 90-day audit trail.

Book a 30-minute demo to see your own skill inventory.

Methodology and disputes

Every skill is assessed by the Anomity Skill Intelligence engine against its public source; findings indicate risk patterns, not confirmed exploitation. Maintainer of agents-pay? Report an issue or request a rescan.

Ask AI about Anomity
ChatGPT Claude Perplexity Google AI Grok