munger-perspective
Warn
Audited by Snyk on Apr 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's SKILL.md Agentic Protocol (Step 2) explicitly requires using WebSearch/tools to fetch and research public third‑party web content (news, financial reports, criticism and assorted websites like CNBC/Seeking Alpha/Wikipedia referenced in the repo) and to base its judgments on that material, so untrusted external content is ingested and can materially influence the agent's decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata