T09 · Insecure Skill Coding Practices
- Location
SKILL.md:22- Finding
WebDAV Password Exposed Through Command-Line Arguments
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill is a coherent Joplin CLI helper, but it documents credential entry and destructive note deletion without enough safety guidance.
Review this skill before installing if your Joplin notes contain sensitive data. Only allow it to change sync settings or delete notes after explicit confirmation, prefer note IDs after listing targets, and avoid entering real WebDAV passwords directly in commands that may be saved in shell history or logs.
SKILL.md:22WebDAV Password Exposed Through Command-Line Arguments
The skill description is broadly scoped ('Use for reading, creating, editing notes and managing todos') without clear activation constraints, confirmation requirements, or limits on when destructive or sensitive actions should be taken. In an agent setting, vague activation language can cause overuse of the skill in contexts involving private notes or unintended state changes.
The WebDAV setup instructions include direct credential entry on the command line without any privacy or secret-handling warning. In agent or logged shell environments, this can expose usernames and passwords through shell history, transcripts, process inspection, or accidental reuse in unsafe contexts.
The documented deletion commands allow permanent note or notebook removal but provide no warning, confirmation guidance, or recommendation to verify targets first. In an agent workflow, this increases the chance of accidental destructive actions, especially when titles are ambiguous or the wrong item is selected.
No suspicious patterns detected.