sap-hana-cli
Fail
Audited by Snyk on Mar 14, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.80). The prompt includes explicit examples of embedding passwords/credentials in CLI flags (e.g.,
-u DBUSER -p PASSWORD,-u USER -p PASS) and instructs saving/using service keys and env vars, so an LLM could be asked to emit commands or code containing user secrets verbatim — enabling secret exfiltration risk.
Issues (1)
W007
HIGHInsecure credential handling detected in skill instructions.
Audit Metadata