amz-a-plus-content

Fail

Audited by Snyk on May 27, 2026

Risk Level: HIGH
Full Analysis

HIGH W008: Secret detected in skill content (API keys, tokens, passwords).

  • Secret detected (high risk: 1.00). I scanned the full prompt for literal, high-entropy credentials. No API keys, PEM/private keys, or complex passwords appear. However, the WhatsApp invite URL at the end (https://chat.whatsapp.com/ILX65p1yWcaIG3c9WGHpTY) contains a high-entropy token that can grant access to the chat and therefore qualifies as a usable secret-like credential. If that link was meant to be public, it may be intentional; if not, treat it as an exposed access token and rotate/revoke it. No other hardcoded secrets were found.

Issues (1)

W008
HIGH

Secret detected in skill content (API keys, tokens, passwords).

Audit Metadata
Risk Level
HIGH
Analyzed
May 27, 2026, 02:07 AM
Issues
1
Security Audit — snyk — amz-a-plus-content