brand-naming
Warn
Audited by Snyk on May 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill's required workflow explicitly instructs the agent to perform WebSearch/WebFetch against public sites (e.g., "WebSearch for 'name.com' and 'name' app", visiting name.com, "site:play.google.com" / "site:apps.apple.com", and searching EUIPO/USPTO/WIPO via WebSearch) and to read and act on those third-party pages to accept/discard names, so untrusted external content can materially change the agent's decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata