mirrord-operator

Fail

Audited by Snyk on Feb 16, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). The skill explicitly shows and encourages placing a license key directly in a Helm --set command and in values.yaml and prompts asking users for a license key, which could cause the agent to echo secret values verbatim in commands or config it generates.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 16, 2026, 10:55 AM