k8s-capi

Fail

Audited by Snyk on Feb 16, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill calls a tool that "returns kubeconfig to access the cluster" (and may surface tokens/certificates/client keys), so the agent would need to output sensitive secret values verbatim if it returns or displays that kubeconfig.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 16, 2026, 02:41 AM