init-latex-project
Warn
Audited by Snyk on May 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's scripts/init.sh (download_styles / fetch_zip) explicitly curl/unzip style ZIPs from public third‑party sites listed in sources.yaml (e.g., media.icml.cc, media.nips.cc, GitHub repos) at runtime and then ingests those files to generate venue_preamble.tex and drive project setup/compile behavior, so untrusted web-hosted content can materially influence subsequent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata