microsoft-foundry

Warn

Audited by Snyk on May 12, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The skill's required Create workflow (foundry-agent/create/create.md, Steps 3–4 "Browse and Select Sample" and "Download Sample Files") explicitly instructs the agent to call the public GitHub API and fetch sample files (and other parts enable Web Search / Bing Grounding and external MCP/toolbox endpoints), meaning it ingests untrusted public web content that the agent is expected to read and act on, which can materially influence subsequent code, deployment, and tool-use decisions.

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

Issues (2)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

W012
MEDIUM

Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 12, 2026, 10:08 PM
Issues
2