mine-plugins

Fail

Audited by Snyk on Apr 3, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 0.80). The skill requires the agent to "read every file completely" and run credential-detection inventory/security scans, which means it may encounter and be expected to report or reproduce hardcoded API keys, tokens, or passwords verbatim during analysis, creating a significant exfiltration risk.

Issues (1)

W007
HIGH

Insecure credential handling detected in skill instructions.

Audit Metadata
Risk Level
HIGH
Analyzed
Apr 3, 2026, 06:09 PM
Issues
1