tooluniverse-rare-disease-diagnosis

Warn

Audited by Snyk on Mar 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's mandatory workflow and code (SKILL.md and DIAGNOSTIC_WORKFLOW.md) explicitly call public third‑party APIs and indexes (e.g., Orphanet, OMIM, ClinVar, gnomAD, PubMed/BioRxiv/OpenAlex, DisGeNET, CELLxGENE, ChIPAtlas) and requires the agent to ingest and interpret those external results to rank diagnoses, prioritize genes, and decide testing/actions, so untrusted web content can directly influence tool use and decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 29, 2026, 11:33 PM
Issues
1