Niche-Awesome

Warn

Audited by Snyk on Jul 14, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). prompt.md 的运行流程要求用户去 Google Trends/Reddit/G2/Trustpilot 等检索并“把你看到的截图描述或者数据贴给我”,这些由外部网站/他人评论产生的自由文本会被用户粘贴回对话,从而进入该技能的 LLM 上下文(间接提示注入风险)。

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 14, 2026, 07:22 AM
Issues
1
Security Audit — snyk — Niche-Awesome