authentication

Warn

Audited by ZeroLeaks on Apr 15, 2026

Risk Level: MEDIUM
Scan Summary

The SKILL.md raises two transparency concerns—a potential hardcoded credential and an obfuscated or encoded execution path—that meaningfully weaken pre-use reviewability and prevent a clean assessment. Prompt injection boundaries stay reasonably clear, with no strong signals pushing the agent to treat external content as instructions. However, because behavior analysis was not run and the transparency issues remain unresolved, confidence is low; the transparency findings alone warrant a WARNING, as they could mask risks that finite testing would not catch.

Score
76/100
Verdict
WARNING
Confidence
low
Findings
2
Section Analysis (3)
TransparencyAT_RISK
39/100

The skill has 2 transparency concerns that weaken pre-use reviewability, mainly around potential hardcoded credential and obfuscated or encoded execution path.

Prompt InjectionPASS
92/100

The scanned skill keeps data and instructions reasonably separate and does not strongly encourage the agent to treat external content as policy.

Agent BehaviorSkipped

Behavior analysis was not run.

Findings (2)
CRITICAL

Potential hardcoded credential

HIGH

Obfuscated or encoded execution path

Coverage DetailsClick to expand
Discovered Files
1
Omitted Files
0
Analyzed Bytes
17.4 KB
Sections Completed
2
Sections Skipped
1
Behavior Probes
0/0
Audit Metadata
Score
76/100
Verdict
WARNING
Confidence
low
Sections
2/3 completed
Findings
2
Mode
risk
Files Scanned
1
Duration
84.2s
Analyzed
Apr 15, 2026, 08:25 PM
Security Audit — zeroleaks — authentication