system-prompt-clinic

Fail

Audited by Snyk on Mar 29, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill explicitly accepts system prompts via direct paste or file path and requires presenting "Before" sections verbatim (side-by-side before/after and the full transformed prompt), which would force the model to echo any secrets present in the input, enabling exfiltration.

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
Mar 29, 2026, 03:27 AM
Issues
1
Security Audit — snyk — system-prompt-clinic