literature-review-generator
Warn
Audited by Snyk on Jul 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). SKILL.md mandates runtime calls to public open literature APIs (e.g.,
literature-search-openalex,literature-search-arxiv,pubmed-database,literature-search-biorxiv,literature-search-europepmc) to fetch metadata including abstracts, and then uses the LLM to read those abstracts for semantic eligibility—this is outsider-authored free text from public web sources entering the LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata