frontend-design
Warn
Audited by Snyk on Mar 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's documentation (references/design-resources.md and references/component-libraries.md) explicitly instructs sourcing and including public inspiration/component/model URLs (e.g., Dribbble, 21st.dev, Sketchfab) in section specs and mood boards, which means the agent is expected to ingest and act on untrusted, user/third-party content that can materially influence design decisions and subsequent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata