generating-components

Warn

Audited by Snyk on Mar 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's mandatory Agent Workflow requires spawning mcp__magic__21st_magic_component_inspiration to "Search 21st.dev for inspiration" (SKILL.md) and the references/21st-dev.md describes using 21st.dev tools to retrieve component examples and code, so the agent will fetch and interpret public third‑party content from 21st.dev that can materially influence generation decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 22, 2026, 06:41 PM
Issues
1
Security Audit — snyk — generating-components