keyword-research
Warn
Audited by Snyk on Jun 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The skill calls a public/community-run third-party API (Jungle Scout via NexScope proxy) and ingests the returned keyword objects’ free-text fields (e.g.,
attributes.name/keyword) into the LLM context as part of the generated markdown report and chart labels.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata