content-creation-publisher

Warn

Audited by Snyk on Jul 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.78). 该技能的必经工作流包含“网页URL→baoyu-url-to-markdown(用Chrome CDP抓取并转Markdown)→article-illustrator分析文章内容生成提示/插画”的路径,运行时会读取由外部网页作者提供的自由文本(HTML/网页正文)并转为可读Markdown进入LLM上下文,构成公网上抓取内容引发的间接提示注入风险。

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.70). 该技能明确提到“绕过反自动化检测”并描述自动打开浏览器并自动登录、在本地保存账号信息,鼓励绕过平台反自动化/安全机制,存在促使破坏机器或服务安全的风险。

Issues (2)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 27, 2026, 01:20 AM
Issues
2
Security Audit — snyk — content-creation-publisher