File appears to expose a hardcoded API secret or token.
Critical
- Code
- suspicious.exposed_secret_literal
- Location
- SKILL.md:152
Security audit
Security checks for vulnerabilities and agentic risk
This is a local Dockerfile security scanner whose file reading and command examples are disclosed and aligned with its purpose.
Install if you want a local Dockerfile audit helper. Run it only on repositories you intend to scan, and avoid sharing raw output publicly if Dockerfiles may contain real secrets because matching lines can be printed.
Detected: suspicious.exposed_secret_literal