bdg-browser-debug
Warn
Audited by Snyk on Jun 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). At runtime, the skill’s
bdg http://localhost:4321// browser-driven commands (e.g.,bdg peek,bdg network list,bdg console,bdg dom get --raw) ingest free-form page content, console messages, and DOM/HTML that originate from the visited site (an outsider source) into the agent’s LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata