T08 · Insecure Dependencies
- Location
SKILL.md:5- Finding
Unpinned Third-Party Dependency Creates a Supply-Chain Risk
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This is a straightforward SerpAPI search skill with some credential and dependency hygiene issues, but no evidence of hidden or unrelated behavior.
Install only in an environment where you are comfortable giving the skill access to a SerpAPI key and sending your search queries to SerpAPI. Prefer setting SERPAPI_API_KEY through a secret manager or environment variable, do not hardcode it into the Python file, and consider pinning or locking the serpapi dependency before use.
SKILL.md:5Unpinned Third-Party Dependency Creates a Supply-Chain Risk
SKILL.md:29Setup Documentation Encourages API-Key Hardcoding
Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.
from typing import Optional
def serpapi_search(query: str, engine: str = "google") -> Optional[str]:
# Get API key from environment variable or use default
api_key = os.getenv("SERPAPI_API_KEY", "")
if not api_key:
return "Error: SerpAPI key not found. Set SERPAPI_API_KEY environment variable."
The skill metadata declares Python execution and the documentation explicitly references use of the SERPAPI_API_KEY environment variable, but the manifest does not declare any tool scope such as permissions or allowed-tools. This creates an authorization/visibility gap where the skill's access to sensitive environment data is not explicitly constrained or disclosed, increasing the risk of secret exposure or overly broad runtime privileges.
No suspicious patterns detected.