control-flow-abstraction-generator

Fail

Audited by Snyk on Mar 6, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill explicitly instructs labeling statement nodes with the statement text (not just line numbers), so if the input code contains string literals like API keys or passwords the model would reproduce those secret values verbatim in the CFG output, creating an exfiltration risk.
Audit Metadata
Risk Level
HIGH
Analyzed
Mar 6, 2026, 10:19 PM