xiaohongshu-growth
Warn
Audited by Snyk on Jun 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). 该技能的运行流程包含“选题与热点研究”调用
brave-search(运行时抓取公共网页/搜索结果的文本),这些外部网页内容会被读入并进入LLM上下文,从而存在间接提示注入风险。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata