T09 · Insecure Skill Coding Practices
- Location
scripts/keeper_creds.py:485- Finding
Inline delivery exposes raw credentials without enforced user consent
- Content
View full analysis
) ``` ### Technical Analysis Inline mode reads a login, password, or selected secret field from Keeper and serializes it into both the command's JSON output and a ready-to-send message. This places plaintext credentials on standard output before any recipient-side transmission occurs. The requirement to obtain user confirmation exists only in documentation and in the `_sensitive` warning. The implementation does not require a confirmation option, authorization token, recipient identity, or interactive approval before retrieving and emitting the secret. Consequently, an automated agent can invoke inline mode and disclose the credential without a technically enforced consent boundary. Standard output may be retained by shell capture, o ...[truncated 1249 chars]- Remediation
View remediation
` and reject unattended use unless the authorization can be independently validated. ]]>
