claude-in-chrome-expert

Warn

Audited by Snyk on Apr 20, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill explicitly navigates to and reads arbitrary web pages and their DOM/console/network output—e.g., SKILL.md and references/quick-mode.md show the Quick Mode "N " navigate command and references/tools-reference.md documents read_page, get_page_text, find, read_network_requests, and javascript_tool—so the agent ingests untrusted, user-generated/public web content and then uses that content to drive tool actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 20, 2026, 11:27 AM
Issues
1
Security Audit — snyk — claude-in-chrome-expert