code-roaster
Fail
Audited by Snyk on Feb 19, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The skill scans repository files and generates report sections and code snippets verbatim (including hard-coded secrets it finds) without instructing redaction, so it can require echoing secrets from code into output, creating an exfiltration risk.
Audit Metadata