archon-workflow
Warn
Audited by Snyk on Mar 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's RAG Knowledge Base workflow (e.g., rag_search_knowledge_base, rag_search_code_examples, and rag_read_full_page with a url) explicitly fetches and reads external/public documentation and pages as part of normal task-research steps, allowing untrusted third-party content to influence agent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata