workflow-quality-gate
Warn
Audited by Snyk on Jul 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). SKILL.md’s required workflow instructs the agent to “Read
~/.cursor/skills/test-red-team/SKILL.mdand follow it” (and similarly other gate SKILL.md files), so at runtime the agent ingests outsider-authored free text from files provided by the user’s local~/.cursor/skills/...path rather than a bundled, trusted reference.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata