cold-call-scripts

Warn

Audited by Snyk on Jul 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.75). SKILL.md instructs the runtime workflow to call ColdIQ MCP/API functions such as mcp__coldiq__fetch_page_content and mcp__coldiq__extract_post_engagement, whose returned page/post text is outsider-authored free-form web/social content that would be ingested into the agent’s LLM context for scripting.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 22, 2026, 06:36 PM
Issues
1
Security Audit — snyk — cold-call-scripts