risk-warning-catalysts
Warn
Audited by Snyk on Mar 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill's workflow (SKILL.md step 1: "Pull the latest announcements") and the overlay references (references/idc-monitoring-indicators.md Source Map listing public sites such as https://www.cninfo.com.cn, https://b2b.10086.cn, https://www.miit.gov.cn, https://www.nea.gov.cn and local government websites) require ingesting external public third-party content that will be read and used to drive monitoring triggers and decisions, enabling indirect prompt injection risk.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata