code-re-qt5

Fail

Audited by Snyk on Aug 2, 2026

Risk Level: CRITICAL
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The prompt requires preserving raw artifacts and printing register/memory values (hex dumps, log excerpts, and hook output), which forces the agent to reproduce any embedded secrets (API keys, tokens, or passwords) verbatim if found.

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.70). The GitHub releases URL points to a personal/third‑party repo that distributes a Ghidra extension (downloadable .zip/plugin) from an individual account and is therefore potentially unvetted/suspicious, while ghidra-sre.org is the official Ghidra site and not flagged.

Issues (2)

W007
HIGH

Insecure credential handling detected in skill instructions.

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 2, 2026, 03:01 AM
Issues
2
Security Audit — snyk — code-re-qt5