File appears to expose a hardcoded API secret or token.
Critical
- Code
- suspicious.exposed_secret_literal
- Location
- references/api-reference.md:14
Security audit
Security checks across malware telemetry and agentic risk
This is a straightforward Echo AI integration that uses an API key for listed Echo AI actions and discloses when chat calls can spend credits.
Use this skill if you trust Echo AI and need your agent to interact with Echo assistants. Prefer an assistant-scoped API key when possible, avoid sending secrets or sensitive business data in chat messages, and approve credit-consuming chat calls only when you intend to spend credits.
64/64 vendors flagged this skill as clean.
Detected: suspicious.exposed_secret_literal