figma-to-code-skill

Warn

Audited by Snyk on Jun 23, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). The skill’s runtime workflow (Step 1) explicitly reads/extracts design tokens and component details from a Figma file via Figma MCP; that Figma file content is authored by designers other than the operating user, so it can include free-form text (e.g., labels, annotations) that the LLM ingests as readable prose.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 23, 2026, 07:17 PM
Issues
1
Security Audit — snyk — figma-to-code-skill