screening
Warn
Audited by Snyk on May 7, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md "Step 2: Execute Searches" explicitly requires searching public third‑party databases (e.g., OpenSanctions, Wikidata, OFAC, Interpol) and "Document all matches" and "Step 3: False Positive Assessment" requires the agent to read/interpret those matches to decide CLEAR/ESCALATE, so untrusted public content can directly influence decisions and actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata