planning-setup
Warn
Audited by Snyk on Mar 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's usage guide and planning rules (references/usage-guide.md and templates/planning-rules.md) explicitly require the agent to perform browser/web searches and save/read findings from those external web/navigation operations, meaning untrusted third-party content from public websites can be ingested and used to drive decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata