Exposed secret literal
Critical
- Finding
- File appears to expose a hardcoded API secret or token.
Security checks across static analysis, malware telemetry, and agentic risk
No artifact-backed suspicious behavior could be confirmed because the workspace files could not be read in this run.
This result is low confidence because the artifacts could not be inspected. Re-run the review with readable metadata.json and artifact/ contents before relying on this assessment.
VirusTotal findings are pending for this skill version.
No visible risk-analysis findings were reported for this release.