init-latex-project

Warn

Audited by Snyk on May 14, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's scripts/init.sh (download_styles / fetch_zip) explicitly curl/unzip style ZIPs from public third‑party sites listed in sources.yaml (e.g., media.icml.cc, media.nips.cc, GitHub repos) at runtime and then ingests those files to generate venue_preamble.tex and drive project setup/compile behavior, so untrusted web-hosted content can materially influence subsequent actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 14, 2026, 06:18 PM
Issues
1
Security Audit — snyk — init-latex-project