hasura-docker-cli

Fail

Audited by Snyk on Feb 15, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The prompt contains explicit examples that embed the Hasura admin secret directly in commands (e.g., --admin-secret "your-actual-secret-here" and export HASURA_ADMIN_SECRET={your-admin-secret}), which instructs the agent to include secret values verbatim in generated output.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 15, 2026, 08:49 PM