qa-analyzing-ux-flows
Warn
Audited by Snyk on Apr 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's scripts and SKILL.md show it navigates to arbitrary provided URLs (accessibility_check.py uses page.goto with the --url/--pages inputs and evaluates page content via page.evaluate), so it directly fetches and ingests untrusted third‑party web pages and uses their content to drive analysis and recommendations.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata