vue-skilld
Warn
Audited by Snyk on Apr 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill packages and instructs the agent to consult bundled, user-generated public content (see references/discussions/*.md and embedded URLs such as https://github.com/orgs/vuejs/discussions/14039) — i.e., scraped GitHub discussions and public docs that the agent will read and can materially influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata