portfolio-review

Warn

Audited by Snyk on Jun 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.72). 이 스킬은 “Accept URLs… screenshots… PDF resumes… markdown/text content” 및 “Read all provided content end-to-end”를 요구하지만, 런타임에 사용자가 제공한 외부 웹/문서/댓글 등(특히 URL로 가져온 공개 웹 콘텐츠)의 자유 텍스트가 LLM 컨텍스트로 들어올 수 있는 경로가 명시되어 있습니다(outsider-authored free text).

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 15, 2026, 02:47 PM
Issues
1
Security Audit — snyk — portfolio-review