claims-valuation

Warn

Audited by Snyk on Apr 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill explicitly calls marketcheck APIs in Step 3 (mcp__marketcheck__search_active_cars and mcp__marketcheck__search_past_90_days) to pull public retail listings and sold transactions—untrusted third‑party listing data that the agent ingests and uses to determine FMV and settlement decisions, so external content can materially influence actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 29, 2026, 02:40 AM
Issues
1
Security Audit — snyk — claims-valuation