dotfiles-optimizer
Fail
Audited by Snyk on Mar 6, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.80). The skill explicitly instructs the agent to read dotfiles, detect and report exposed credentials (including file paths/line numbers and before/after examples) and to apply fixes (e.g., moving tokens to .env), which creates a strong likelihood the LLM will read and output secret values verbatim unless additional safeguards are enforced.
Audit Metadata