knowledge-ops
Warn
Audited by Snyk on Sep 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The agent skill
knowledge-opsincludes a script (kb_ingester.py) that walks an internal directory of markdown files (such as wiki exports from Notion, Confluence, or Obsidian) and ingests their free text to generate health reports and cleanup lists.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata