AGENT LAB: SKILLS

insecure-defaults

Fail

Audited by Snyk on Feb 15, 2026

Risk Level: HIGH
Full Analysis

HIGH W007: Insecure credential handling detected in skill instructions.

  • Insecure credential handling detected (high risk: 1.00). The skill explicitly directs the agent to search for hardcoded credentials, fallback secret values, and include “evidence” code snippets/locations—which requires extracting and potentially outputting secret values verbatim.
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 15, 2026, 08:09 PM