vue-skilld

Warn

Audited by Snyk on Apr 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill packages and instructs the agent to consult bundled, user-generated public content (see references/discussions/*.md and embedded URLs such as https://github.com/orgs/vuejs/discussions/14039) — i.e., scraped GitHub discussions and public docs that the agent will read and can materially influence actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 27, 2026, 03:01 AM
Issues
1