docker-wizard
Fail
Audited by Snyk on Apr 6, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The skill includes explicit hard-coded credentials in its docker-compose examples (e.g., DATABASE_URL with user:pass and POSTGRES_PASSWORD=pass) and instructs the agent to read project files, which can cause the LLM to output secret values verbatim.
Issues (1)
W007
HIGHInsecure credential handling detected in skill instructions.
Audit Metadata