docx-to-markdown

Fail

Audited by Snyk on May 13, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E004: Prompt injection detected in skill instructions.

  • Potential prompt injection detected (high risk: 0.90). The prompt embeds broad meta-instructions (mandatory task-tracking before actions, a "strict execution contract", authorization to spawn subagents, and directives to ignore other mode-switch instructions) that change agent behavior beyond the stated docx→markdown purpose and therefore constitute an out-of-scope prompt-injection.

Issues (1)

E004
CRITICAL

Prompt injection detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
May 13, 2026, 05:27 AM
Issues
1