ui-convert-extractor-html
Warn
Audited by Snyk on Apr 7, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's Extraction Process Step 2 explicitly reads external stylesheets ("<link rel="stylesheet" href="..."> → read the file") and detects/uses Tailwind CDN and linked Bootstrap CSS, meaning it ingests and interprets third-party web resources as part of its style-resolution and IR-mapping workflow.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata