github-profile-authority-page
Warn
Audited by Snyk on May 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly requires inspecting public GitHub content (the USERNAME/USERNAME repo, profile README.md, pinned repositories, public repos/descriptions, profile bio, website/blog/RSS links and recent public activity), which are user-generated, untrusted third-party sources that the agent must read and that can materially influence decisions like pin selection and README edits.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata