editorial-engineer

Warn

Audited by Snyk on Apr 30, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The skill's required workflow (Planning Mode Step P3 and Writing Mode Step W3 in SKILL.md) explicitly spawns research/source-finding and trend/search agents to gather real, citable sources and public search/trend data from the open web, and references/seo-and-files.md even prescribes sourcing images from Unsplash — all of which ingest open/public third-party content that the agent must read and which materially influence drafting decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 30, 2026, 09:42 AM
Issues
1
Security Audit — snyk — editorial-engineer