export

Fail

Audited by Snyk on Jun 23, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill reads an access_token from local settings and instructs the agent to generate and (in some modes) display curl commands that include an Authorization: Bearer $TOKEN header, which would require the LLM to insert and therefore output the secret token verbatim.

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
Jun 23, 2026, 05:36 AM
Issues
1
Security Audit — snyk — export