business-model
Warn
Audited by Snyk on Jul 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). SKILL.md’s required workflow includes “Research autonomously” and “Search queries to run” (e.g., competitor pricing, benchmarks), which at runtime typically involves fetching public web content and ingesting scraped page text into the agent’s LLM context—an outsider-authored free-text source.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata