frontend-design

Warn

Audited by Snyk on Mar 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's documentation (references/design-resources.md and references/component-libraries.md) explicitly instructs sourcing and including public inspiration/component/model URLs (e.g., Dribbble, 21st.dev, Sketchfab) in section specs and mood boards, which means the agent is expected to ingest and act on untrusted, user/third-party content that can materially influence design decisions and subsequent actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 27, 2026, 11:19 AM
Issues
1
Security Audit — snyk — frontend-design