control-flow-abstraction-generator
Fail
Audited by Snyk on Mar 6, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The skill explicitly instructs labeling statement nodes with the statement text (not just line numbers), so if the input code contains string literals like API keys or passwords the model would reproduce those secret values verbatim in the CFG output, creating an exfiltration risk.
Audit Metadata