T09 · Insecure Skill Coding Practices
- Location
SKILL.md:33- Finding
Rate-Limited Deepdub API Credential Embedded in Documentation
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, lines 33-40
Vulnerability Type: Hardcoded credential and plaintext sensitive data
Risk Level: LowVulnerable Code Snippet:
markdown ### Free Trial Credentials For testing only, you can use these free trial credentials:text DEEPDUB_API_KEY=dd-00000000000000000000000065c9cbfe DEEPDUB_VOICE_PROMPT_ID=11f3403d-35b9-4817-8d55-f41694ea6227markdown > **Note:** These are rate-limited trial credentials for evaluation purposes only. Do not use for production. Obtain your own API key and voice prompts from Deepdub for production use.Technical Analysis
The project distributes a usable Deepdub trial API key and voice prompt identifier as plaintext documentation. Although the documentation identifies the credential as rate-limited and intended only for evaluation, every recipient of the package can extract and use it independently of the skill.
Publicly distributing a shared credential removes user-level accountability and prevents reliable attribution of API activity. It also permits unrelated parties to consume the shared quota, trigger provider-side abuse controls, or cause the credential to be revoked. If the credential has capabilities beyond speech synthesis or if provider-side permissions change, the impact could increase.
No evidence indicates that this credential grants local system access, production account access, or elevated privileges. The confirmed scope is limited to whatever permissions and quota Deepdub assigns to this trial credential.
Attack Path
- An attacker downloads the skill or views
SKILL.md. - The attacker copies the plaintext
DEEPDUB_API_KEYandDEEPDUB_VOICE_PROMPT_ID. - The attacker submits requests directly to the Deepdub service using those values.
- The shared trial quota may be consumed, abusive content may be generated under the shared identity, or provider rate lim ...[truncated 590 chars]
- An attacker downloads the skill or views
- Remediation
View remediation
Remediation Suggestions
- Remove the API key and voice prompt identifier from all distributed documentation and repository history.
- Revoke or rotate the disclosed trial credential with Deepdub.
- Require each user to obtain an individual trial or production credential through the provider's normal enrollment process.
- Provide placeholders instead of functional values:
text DEEPDUB_API_KEY=your_api_key_here DEEPDUB_VOICE_PROMPT_ID=your_voice_prompt_id_here - Store credentials only in environment variables or an approved secret manager.
- Add automated secret scanning to CI and pre-commit checks.
- If shared evaluation access is necessary, place it behind a controlled proxy that enforces per-user authentication, quotas, expiration, and audit logging rather than publishing the upstream key.
