temps-cli

Fail

Audited by Snyk on Feb 19, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The prompt includes numerous concrete API keys, tokens, and plaintext passwords embedded directly in example commands and flags (e.g., --api-key tk_abc123def456, ghp_abc123, sk_live_abc123, --password "secure123"), which instructs the agent to emit secret values verbatim and therefore creates an exfiltration risk.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 19, 2026, 01:48 AM