eccc-jeanne-sulzer
Warn
Audited by Snyk on Jul 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The skill’s required runtime workflow mandates
web_fetch/retrieval to eccc.gov.kh and related Tier 1 domains specifically to verify case-specific ECCC documents, and it does not require ingesting arbitrary outsider-authored free text without selecting a specific document to fetch.
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 1.00). The skill explicitly requires runtime
web_fetchto eccc.gov.kh (e.g. https://www.eccc.gov.kh/en/about/legal-framework and https://www.eccc.gov.kh/en/cases/case-002/trial-02) and to legal-tools.org to retrieve court documents that are then injected into the agent's context to verify and control its outputs, creating a runtime external dependency.
Issues (2)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata