eve-frontier-data
Warn
Audited by Snyk on May 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's Polling Architecture explicitly fetches public World API data from https://blockchain-gateway-stillness.live.tech.evefrontier.com (see WORLD_API_BASE and _fetch_all) and ingests untrusted, user-generated game data (killmails, tribes, members) that the agent reads and acts on (upserts, entity tracking, Discord bot outputs), so third-party content can materially influence behavior.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata