management-deep-dive
Warn
Audited by Snyk on Jul 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). 该技能的运行流程要求使用 WebSearch 并启动并行 Agent 去抓取公开网页/采访/电话会/社媒等文本(外部作者的内容),这些网页正文会被读成可读自由文本并进入代理的 LLM 上下文。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata