code-re-qt5
Fail
Audited by Snyk on Aug 2, 2026
Risk Level: CRITICAL
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The prompt requires preserving raw artifacts and printing register/memory values (hex dumps, log excerpts, and hook output), which forces the agent to reproduce any embedded secrets (API keys, tokens, or passwords) verbatim if found.
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.70). The GitHub releases URL points to a personal/third‑party repo that distributes a Ghidra extension (downloadable .zip/plugin) from an individual account and is therefore potentially unvetted/suspicious, while ghidra-sre.org is the official Ghidra site and not flagged.
Issues (2)
W007
HIGHInsecure credential handling detected in skill instructions.
E005
CRITICALSuspicious download URL detected in skill instructions.
Audit Metadata