aeo
Warn
Audited by Snyk on May 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's audit workflow explicitly fetches and ingests live, open web pages (see scripts/aeo_audit.py fetch_url and the SKILL.md example "python3 scripts/aeo_audit.py --url https://example.com/post"), treats that untrusted third‑party HTML as input to score and generate recommendations, and those results can drive follow-up optimization or tracking actions—creating a clear path for indirect prompt-injection from arbitrary web content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata