NYC

learn

Fail

Audited by Snyk on Feb 17, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill explicitly preserves and writes user-provided content verbatim (and echoes a one-line summary), so if a user pastes API keys/passwords the agent will output and store those secrets directly, creating an exfiltration risk.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 17, 2026, 03:07 AM