e2e-qa-tester
Fail
Audited by Snyk on Feb 25, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The skill explicitly tells the agent to read credentials from CREDENTIALS.md (or ask the user for them) and then fill login forms using Playwright commands, which requires the LLM to place secret values verbatim into generated actions/commands, creating an exfiltration risk.
Audit Metadata