content-factory-operator
Warn
Audited by Snyk on Jun 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.72). The skill’s REQUIRED runtime workflow includes “Source collection” and “Daily Signals” that can ingest outsider-authored free text such as “market signals” (e.g., competitor posts, community discussions, social trends) and “customer proof” (e.g., testimonials/support tickets/call transcripts), which would be fetched/collected at runtime and then fed into the LLM for brief/draft generation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata