obsidian-clipper-template-creator
Warn
Audited by Snyk on Apr 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly requires fetching and analyzing arbitrary user-provided web pages (see SKILL.md "Fetch & Analyze Reference URL" and references/analysis-workflow.md which instruct using WebFetch or a browser DOM snapshot to parse Schema.org, meta tags, and CSS selectors), so untrusted third-party page content is read and used to determine selectors, template properties, and triggers and therefore can influence agent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata