behavioral-interview-prepper
Warn
Audited by Snyk on Jun 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The skill’s runtime workflow explicitly reads
hojicha/candidate-context.md(Step 1) and then “probe[s] for real experiences” and “append[s] all new stories tohojicha/candidate-context.md” (Step 2.5), where the candidate’s free-form responses are outsider-authored text that can be ingested into the agent’s LLM context for later answer generation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata