course-generator
Fail
Audited by Snyk on Apr 24, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.80). 该技能要求一次性读取并“忠实原文”保留文献中的原文表述并将其写入生成的课程文件,意味着若输入文档包含 API 密钥、令牌或密码等敏感字符串,模型可能会在输出中逐字复制这些秘密,存在明显泄露风险。
Issues (1)
W007
HIGHInsecure credential handling detected in skill instructions.
Audit Metadata