orbit-general

Warn

Audited by Snyk on May 7, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The SKILL.md explicitly says the skill "pulls the past 24 hours of activity from every authenticated connector (GitHub, Linear, Notion, Slack, Gmail, Drive, Sentry, Vercel, …)" and the shipped example.html shows those live connector items being parsed and rendered, so the agent will ingest user- and third-party-generated content (messages, PRs, docs, alerts) and use those fields to choose UI, Top‑3 items and links — meaning untrusted external content can influence runtime behavior.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 7, 2026, 03:23 PM
Issues
1
Security Audit — snyk — orbit-general