docker-best-practices
Fail
Audited by Snyk on Jul 15, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The docker-compose example embeds plaintext credentials (DATABASE_URL with user:pass and POSTGRES_PASSWORD: pass), which requires secrets to appear verbatim in generated configs or outputs and thus poses an exfiltration risk.
Issues (1)
W007
HIGHInsecure credential handling detected in skill instructions.
Audit Metadata