antigravity-skill-orchestrator
Warn
Audited by Snyk on Aug 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The
skill-orchestratorreads the user’s free-text request (Step 1: “Read the user's request” and “Use the user request as input”) to decide which skills to invoke, so an outsider can inject content directly into the workflow the LLM ingests.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata