juejin-article-to-markdown
Fail
Audited by Snyk on Aug 19, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 0.90). 不安全:Skill 明确要求“保留完整链接(包括签名参数)”并示例包含 x-expires/x-signature 等查询参数,意味着模型在输出 Markdown 时需要把带有签名/时效性令牌的 URL 原样写出,等同于处理/泄露敏感访问令牌。
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). 该 Skill 在“第一步:获取文章内容”中会对用户提供的掘金链接并行调用 mcp__ScraplingServer__stealthy_fetch 获取 extraction_type=html/markdown 的正文,并进一步对 HTML/Markdown/页面 window.NUXT 中的文本做提取与嵌入,因此运行时会读取外部(作者可控)的自由文本。
Issues (2)
W007
HIGHInsecure credential handling detected in skill instructions.
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata