seo-hreflang
Warn
Audited by Snyk on May 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's required workflow (e.g., the "/seo hreflang audit " command and steps like "Scan site for language indicators" and the error handling for unreachable URLs in SKILL.md) clearly fetches and analyzes arbitrary public websites/URLs supplied by the user, which are untrusted third‑party content and are read/interpreted to drive validation, tag generation, and follow-up recommendations.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata