skillport-distribution-system
Warn
Audited by Snyk on May 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The workflow explicitly pulls public GitHub repositories (e.g., "Validate from GitHub:
npx skills add https://github.com/OWNER/REPO --list" and thescripts/skillport-sync.shthat runsnpx skills add <repo> ...), meaning the agent will fetch and install untrusted, user-authored repo content that can change installed skills and thus influence agent behavior.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata