competitor-finder
Warn
Audited by Snyk on Jun 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The skill’s Step 2 explicitly instructs checking public web sources at runtime (e.g., G2 “Alternatives,” Capterra comparisons, Google “[product] vs” pages, ProductHunt, LinkedIn job postings), which are outsider-authored free text that would be ingested into the agent’s LLM context to extract competitor information.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata