claude-in-chrome-expert
Warn
Audited by Snyk on Apr 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly navigates to and reads arbitrary web pages and their DOM/console/network output—e.g., SKILL.md and references/quick-mode.md show the Quick Mode "N " navigate command and references/tools-reference.md documents read_page, get_page_text, find, read_network_requests, and javascript_tool—so the agent ingests untrusted, user-generated/public web content and then uses that content to drive tool actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata