review-ml-textbook
Warn
Audited by Snyk on Aug 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL.md’s workflow “Map the artifact” explicitly collects “stable URLs and chapter titles” and then “review exactly this chapter: ,” meaning outsider-authored textbook/manuscript content at user-supplied URLs can be ingested and reviewed at runtime.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata