cost-estimate
Warn
Audited by Snyk on Mar 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md workflow (step 5, "Research Current Market Rates") explicitly instructs the agent to perform live web research and cite current third-party web sources/searches, meaning the agent will fetch and interpret open/public web content that directly influences cost/rate calculations and subsequent recommendations.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata