convert-to-markdown

Warn

Audited by Snyk on May 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's required workflow directly fetches and ingests arbitrary public web content and user-generated media (e.g., scripts/html-to-md.py sends arbitrary URLs to a Crawl4AI server, scripts/mhtml-to-md.py can load HTTP(S) MHTML pages, and scripts/youtube-transcript.py downloads YouTube metadata and captions), so untrusted third‑party content is read and could influence downstream agent behavior.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 17, 2026, 07:33 PM
Issues
1
Security Audit — snyk — convert-to-markdown