1688-item-selection
Fail
Audited by Snyk on Jun 18, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The prompt instructs configuring the gateway Access Key (AK) by passing it directly as a CLI argument (e.g.,
python ... configure YOUR_AK) and refers to prompting users to supply a valid AK, which requires the agent to embed the secret verbatim in generated commands/outputs — an exfiltration risk.
MEDIUM W021: Hidden or invisible Unicode characters detected (potential obfuscation or prompt injection).
- Hidden Unicode characters detected (1 type(s) found)
Issues (2)
W007
HIGHInsecure credential handling detected in skill instructions.
W021
MEDIUMHidden or invisible Unicode characters detected (potential obfuscation or prompt injection).
Audit Metadata