tres-request-skill-update

Warn

Audited by Snyk on Aug 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). In SKILL.md, outsider-authored free text comes directly from the user via Step 0/Step 1–Step 3 conversations, is synthesized into a structured description in Step 4, and then submitted to the first-party save_ai_conversation_feedback tool in Step 5 without any need to pre-select a specific outsider item.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 1, 2026, 04:44 AM
Issues
1
Security Audit — snyk — tres-request-skill-update