information-retrieval-policy
Warn
Audited by Snyk on May 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The SKILL.md decision flow explicitly requires invoking external retrieval (Step 2/3) including general web search and user-driven public sources (e.g., Stack Overflow, blogs, GitHub issues), and instructs the agent to read and use that content to form conclusions/evidence that drive downstream actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata