slide-skill
Warn
Audited by Snyk on Aug 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s required runtime workflow (notably
presentation.inspect()inartifact_tool/inspect.spec.md) ingests and snapshots text from an imported, user-supplied PPTX by reading all slide/text/notes/comment fields into JSONL for downstream edits, creating an injection surface via attacker-authored slide content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata