open-knowledge-pack-knowledge-base
Warn
Audited by Snyk on Jul 31, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The skill’s runtime workflow described in SKILL.md is about creating a closed evidence loop from user/agent-ingested sources into
external-sources/, then summarizing inresearch/and promoting inarticles/, but the file does not specify any runtime reading of outsider-authored free text beyond that ingest step (and does not define an always-on monitored feed/inbox/comment/jira/github reader).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata