File appears to expose a hardcoded API secret or token.
Critical
- Code
- suspicious.exposed_secret_literal
- Location
- references/user-guides-tutorials.md:286
Security audit
Security checks across malware telemetry and agentic risk
This is a documentation helper skill made of markdown guidance, with no executable install hooks or hidden behavior found.
Safe to install as a documentation helper. Keep requests scoped to the files you want documented, review any generated npm/pip/test commands before running them, and avoid publishing interactive API docs that send real cookies, tokens, or production credentials.
66/66 vendors flagged this skill as clean.
Detected: suspicious.exposed_secret_literal