design-tokens-extraction
Warn
Audited by Snyk on Aug 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s runtime workflow ingests design-file content by connecting to user-supplied Figma/Sketch/Penpot sources via MCP tools (e.g.,
figma.get_file,get_styles,get_local_variables,sketch-context.get_document,get_shared_styles,get_color_assets,penpot.get_file), and that design metadata/strings/variable descriptions are read and normalized by the LLM.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata