orient

Fail

Audited by Snyk on Mar 8, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). The prompt requires reading full manifest and source files and instructs embedding actual file contents/code listings (via uvx showboat exec) into the generated orientation, so any secrets present in those files would be captured and output verbatim even though it doesn't explicitly request user API keys.
Audit Metadata
Risk Level
HIGH
Analyzed
Mar 8, 2026, 03:37 AM