fact-check
Warn
Audited by Snyk on May 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). This skill's Procedure step 4 explicitly instructs the agent to use WebSearch, Read, and external servers ("c7, g MCP servers, WebSearch, or Read") to retrieve and cite web sources, so it will fetch untrusted public third-party content and use it to form verdicts.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata