macys-research
Warn
Audited by Snyk on Aug 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). SKILL.md specifies the workflow only calls Crawlora endpoints with a known numeric Macy’s productId (from a user-provided ?ID value on a macys.com product page) and optionally a user-supplied partial query for /macys/suggest, so the LLM ingests only API-returned first-party Macy’s product/review/suggestion text after the agent has been constrained to a specific productId.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata