frodo

Fail

Audited by Snyk on Mar 3, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.90). The skill explicitly documents command syntaxes that accept username/password as positional CLI arguments and references exporting active secret values, so an agent following the prompt could be instructed to embed secrets verbatim in commands or outputs (an insecure exfiltration pattern).
Audit Metadata
Risk Level
HIGH
Analyzed
Mar 3, 2026, 04:27 AM