enable-shopify-cms
Warn
Audited by Snyk on Jun 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). At runtime, the skill’s required workflow queries Shopify metaobjects (
metaobjects(type: "cms_homepage"/"cms_page")) via the Storefront API and then transforms the returned fields (including free-text like titles/descriptions and JSONsections) into LLM context for rendering; this is outsider-authored content from the Shopify store’s CMS (not authored by the operating user in the prompt), so it can include arbitrary free text.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata