python-code-reviewer
Fail
Audited by Snyk on Feb 24, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.90). The prompt requires the agent to quote and provide concrete code examples and line-specific references when reviewing code, so if the submitted code contains embedded secrets (API keys, tokens, passwords) the model will likely reproduce those secret values verbatim and there is no instruction to redact or avoid echoing them.
Audit Metadata