create-agent

Warn

Audited by Snyk on May 20, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's documentation (see the "Knowledge bases" and "Knowledge-base agent (RAG)" sections in SKILL.md and references/agent-config-fields.md) explicitly instructs attaching knowledge bases built from documents, FAQs, and URLs and using ingest_source_config (API/CSV/Google Sheet) so the agent will retrieve and incorporate external/untrusted/public content into prompts and responses, enabling indirect prompt injection.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 20, 2026, 06:14 AM
Issues
1
Security Audit — snyk — create-agent