web-search-perplexity
Warn
Audited by Snyk on Jun 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). At runtime the skill calls Perplexity’s
/chat/completionsand/searchendpoints via the user-providedmessages/query, and Perplexity returns synthesized responses that are derived from outsider-authored public web pages (browser-extracted/snippet text) which the agent then ingests into the LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata