search-vector-architect

Fail

Audited by Snyk on Feb 22, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). The prompt's example code directly passes API keys as string parameters (e.g., pinecone.init(api_key='your-api-key') and OpenAI(api_key='your-openai-key')), which encourages embedding secrets verbatim in generated code and thus requires the LLM to handle/output secret values directly.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 22, 2026, 09:36 PM