wiki-page-writer

Fail

Audited by Snyk on Feb 21, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). This skill requires capturing and embedding the user-provided repository URL (and the output of git remote) verbatim into citation links, so if those URLs contain embedded credentials/tokens the LLM will output them and exfiltrate secrets.

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's "Source Repository Resolution (MUST DO FIRST)" steps in SKILL.md require detecting or asking for a remote repository URL (e.g., GitHub/Azure DevOps) and then reading and citing files from that remote repository, which means the agent will fetch and interpret arbitrary third‑party repository content as part of its workflow.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 21, 2026, 03:34 AM