feishu-cli-media

Fail

Audited by Snyk on Feb 16, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). The skill instructs constructing CLI commands and outputs that include file tokens and parent-node/document IDs verbatim (e.g., file_token, doc IDs), which are secret-like values that the LLM would need to echo into its responses and so pose an exfiltration risk.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 16, 2026, 01:43 AM