fairstack-image-generation
Warn
Audited by Snyk on Mar 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's SKILL.md explicitly accepts arbitrary external inputs—parameters like image_url / image_urls for image-to-image editing and search_prompt with search_sources ("google", "wikimedia") that auto-find web reference images—so the agent will fetch and act on untrusted public web content as part of generation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata