brand-naming

Warn

Audited by Snyk on May 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The skill's required workflow explicitly instructs the agent to perform WebSearch/WebFetch against public sites (e.g., "WebSearch for 'name.com' and 'name' app", visiting name.com, "site:play.google.com" / "site:apps.apple.com", and searching EUIPO/USPTO/WIPO via WebSearch) and to read and act on those third-party pages to accept/discard names, so untrusted external content can materially change the agent's decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 10, 2026, 03:14 AM
Issues
1