biomedical-skills

Warn

Audited by Snyk on Apr 5, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The package includes multiple skills (e.g., med-researcher / med-researcher-r1, clinicaltrials-api/clinicaltrials-api-v2, ena-sequence-api, genomas, genoTEX, etc.) whose required workflows explicitly query and ingest data from public third‑party sources (PubMed/PMC, ClinicalTrials.gov, ENA/GEO/TCGA, public APIs like AlphaFold/BioThings/Ensembl) and then read/interpret that content to drive hypothesis generation, evidence synthesis, experimental design or downstream actions, which creates a clear vector for indirect prompt injection via untrusted user-submitted/public records.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 5, 2026, 11:14 PM
Issues
1