render-deploy

Fail

Audited by Snyk on Jun 15, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill explicitly instructs inserting the user's Render API key into config files and CLI commands (e.g., ~/.cursor/mcp.json, export RENDER_API_KEY, --header "Authorization: Bearer <YOUR_API_KEY>"), which would require the assistant to request and/or emit secret values verbatim.

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
Jun 15, 2026, 09:46 AM
Issues
1
Security Audit — snyk — render-deploy