keyword-research

Warn

Audited by Snyk on Jun 28, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.75). The skill calls a public/community-run third-party API (Jungle Scout via NexScope proxy) and ingests the returned keyword objects’ free-text fields (e.g., attributes.name / keyword) into the LLM context as part of the generated markdown report and chart labels.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 28, 2026, 07:05 AM
Issues
1
Security Audit — snyk — keyword-research