rodin3d-skill
Fail
Audited by Snyk on Feb 16, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.90). The prompt includes examples that embed API keys in commands and code (e.g., --api-key vibecoding, passing api_key="your_api_key" or --api-key ), which encourages including secret values verbatim in generated outputs or commands and thus presents a high exfiltration risk.
Audit Metadata