prd

Warn

Audited by Snyk on Apr 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's Research phases (Standard and Deep) explicitly call external search/fetch tools (ToolSearch with "+web-search" and "+web-fetch", fetch_url(url="...")) and spawn web-search-agent subagents that read public web pages (writing results to /tmp/prd-research-*.md), and those findings are synthesized into the PRD and used to drive subsequent decisions, meaning untrusted third-party content can influence agent behavior.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 10, 2026, 07:55 PM
Issues
1