fred-prices
Fail
Audited by Snyk on Mar 15, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The skill explicitly instructs prompting the user for their FRED API key and to pass it as a query parameter (e.g., &api_key=) and shows curl examples embedding the key, which requires the LLM to include secret values verbatim in generated commands/outputs.
Issues (1)
W007
HIGHInsecure credential handling detected in skill instructions.
Audit Metadata