auto-research
Warn
Audited by Snyk on Aug 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The skill’s runtime workflow (“Investigate”) can ingest outsider-authored free text when it uses
intelli_research(for “Web docs, APIs, current info”) and/orweb_fetch(for “Specific URLs”) to fetch and extract content from arbitrary external sources that the user/provider selects.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata