dex-screener-scanner
Warn
Audited by Snyk on Jul 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Yes—this skill’s required workflow scrapes live token listing text from the public DexScreener site at runtime (browser automation reads DOM text like token names/fields via selectors such as
div[data-group="token-row"]/tr[data-id]), which is outsider-authored free text that can be incorporated into the agent’s LLM context when forming the “rationale”/report.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata