deepread-insurance

Fail

Audited by Snyk on May 5, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.90). The prompt includes explicit examples that hard-code or show API keys (e.g., export DEEPREAD_API_KEY="sk_live_your_key_here" and API_KEY = "sk_live_YOUR_KEY"), which encourages embedding secret values verbatim into generated code/commands and thus creates an exfiltration risk.

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
May 5, 2026, 03:06 AM
Issues
1