crawlbase
Warn
Audited by Snyk on May 2, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md explicitly exposes actions such as "Crawl URL" and "Get Stored Result" that fetch and return HTML from arbitrary web pages via Crawlbase, meaning the agent will read untrusted third-party content (web pages) that could influence its actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata