docker-expert
Warn
Audited by Snyk on Aug 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL.md’s workflow analyzes the caller-provided project/container setup using internal tools (Read/Grep/Glob) and shell fallbacks, which implies the LLM ingests user-supplied repository/docker configuration text at runtime rather than trusted first-party provider docs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata