code-explorer
Warn
Audited by Snyk on Jun 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.90). The skill explicitly accepts GitHub links and uses "WebFetch" at runtime to retrieve repository code (e.g. https://github.com/...), which would be injected into the agent's context to drive its analysis and thereby directly control prompts—this is a runtime fetch of external content used to guide the agent.
Issues (1)
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata