agents-sdk-dev

Fail

Audited by Snyk on Aug 17, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 0.90). The content contains deliberate patterns that enable remote code execution and persistent, unattended permission grants (auto-approval) that can be abused for unauthorized file access, credential manipulation, or data exfiltration.

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). This skill’s runtime flow only ingests the user’s provided goal/answers for scaffolding and then loads first-party reference files from its own references/ directory (plus “latest live docs” fetched by WebFetch/WebSearch), but the provided workflow does not describe ingesting arbitrary outsider-authored free text from any monitored external feed/queue or unsolicited community input.

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

Issues (3)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

W012
MEDIUM

Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 17, 2026, 11:52 AM
Issues
3
Security Audit — snyk — agents-sdk-dev