immune

Fail

Audited by Snyk on Apr 23, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). The skill ingests arbitrary text/code into its scan and then returns "Corrected Output" and logs (and injects the raw content into XML prompts) without any instruction to redact or avoid echoing secrets, so any API keys/passwords in the input could be reproduced verbatim.

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
Apr 23, 2026, 06:26 PM
Issues
1