diff-review

Fail

Audited by Snyk on Mar 9, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.90). The skill pipes raw git diffs into LLM-based reviewers and mandates including raw reviewer outputs and the merged report (written to terminal and file), so any secrets present in diffs or reviewer outputs would be handled and emitted verbatim by the agent.
Audit Metadata
Risk Level
HIGH
Analyzed
Mar 9, 2026, 05:01 PM