mobile-verification
Warn
Audited by Snyk on Jul 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). SKILL.md instructs running
node scripts/mobile-check.mjs "<url>" ..., andscripts/mobile-check.mjsuses Playwrightpage.goto(url)to load a runtime-supplied URL and then reads/executes page content viapage.evaluateand user-specified selectors, which can include outsider-authored free text from arbitrary web pages.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata