demand-generation
Warn
Audited by Snyk on Apr 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md explicitly requires ingesting and acting on third‑party intent signals (e.g., "Intent data integrated and actioned" in the Quality Checklist and Step 7's mention of Bombora, G2, or 6sense), which are external, third‑party data sources that the workflow uses to trigger prioritization and outbound actions—meeting the conditions for indirect prompt injection risk.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata