tauri-development
Fail
Audited by Snyk on Apr 11, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.90). The prompt includes an AzureSignTool PowerShell example that passes a client-secret (and other credential identifiers) directly as command-line arguments (e.g., -kvs "client-secret"), which requires embedding secrets verbatim in generated commands and is an insecure pattern.
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's SKILL.md shows an async command fetch_data that performs an HTTP GET on a provided url (Async Commands -> fetch_data) and also registers an HTTP plugin and auto-updater endpoints (plugins/Auto-Updater sections pointing at public GitHub URLs), meaning the agent ingests and acts on untrusted public web content as part of its runtime workflow.
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 1.00). The skill configures the updater plugin to fetch "https://github.com/myorg/myapp/releases/latest/download/latest.json" (and the release asset URLs it references) at runtime and then download/install those remote binaries, which means external URLs are fetched during runtime to deliver and execute remote code.
Issues (3)
W007
HIGHInsecure credential handling detected in skill instructions.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata