ESPHome
Fail
Audited by Snyk on Jul 17, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.70). The list includes direct firmware binary links (an obfuscated "https://...firmware.bin" and "https://updates.mycompany.com/my-product/firmware.bin") which are high-risk download vectors because unsigned/opaque firmware blobs from non-standard hosts can easily be used to distribute malware or compromise devices.
Issues (1)
E005
CRITICALSuspicious download URL detected in skill instructions.
Audit Metadata