aeo

Warn

Audited by Snyk on May 18, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's audit workflow explicitly fetches and ingests live, open web pages (see scripts/aeo_audit.py fetch_url and the SKILL.md example "python3 scripts/aeo_audit.py --url https://example.com/post"), treats that untrusted third‑party HTML as input to score and generate recommendations, and those results can drive follow-up optimization or tracking actions—creating a clear path for indirect prompt-injection from arbitrary web content.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 18, 2026, 07:44 AM
Issues
1
Security Audit — snyk — aeo