wechat-cover
Warn
Audited by Snyk on Aug 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). 运行时从红狐接口
https://redfox.hk/story/api/gzh/search/hotArticleNew取回articles中的imageUrl、以及title/author/url/summary等字段后,报告模板会把这些(尤其是d.keyword与p.case.title/author/url/p.prompt)注入到可执行的 HTML/JS 渲染页面并打开浏览器。
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.80). The skill's runtime script calls the external API at https://redfox.hk/story/api/gzh/search/hotArticleNew to fetch article/image data that are injected into the generated report and used to build image-generation prompts, so fetched content directly influences agent prompts at runtime.
Issues (2)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata