plan-review
Fail
Audited by Snyk on May 6, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.80). The prompt requires citing "file:line" evidence for every claim and writing/readings of files (and to output analysis), which can force the model to reproduce file lines verbatim — including any embedded API keys, tokens, or passwords — creating an exfiltration risk.
Issues (1)
W007
HIGHInsecure credential handling detected in skill instructions.
Audit Metadata