create-agent
Warn
Audited by Snyk on May 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's documentation (see the "Knowledge bases" and "Knowledge-base agent (RAG)" sections in SKILL.md and references/agent-config-fields.md) explicitly instructs attaching knowledge bases built from documents, FAQs, and URLs and using ingest_source_config (API/CSV/Google Sheet) so the agent will retrieve and incorporate external/untrusted/public content into prompts and responses, enabling indirect prompt injection.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata