apify-actor-development
Warn
Audited by Snyk on Apr 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's workflow and examples explicitly instruct creating crawlers that ingest public web pages (e.g., "startUrls" in references/input-schema.md and use of CheerioCrawler/PlaywrightCrawler in SKILL.md Quick Start), so the agent is expected to fetch and read untrusted third‑party web content which can influence crawling/routing and downstream actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata