run-hcom-agents

Warn

Audited by Snyk on Apr 21, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's workflows and scripts explicitly ingest and act on other agents' messages and transcripts (e.g., use of "hcom events", "hcom transcript", and event-driven subscriptions in SKILL.md and the pattern scripts) and the how-it-works docs describe cross-device relay using public MQTT brokers (broker.emqx.io, broker.hivemq.com, test.mosquitto.org), so untrusted/third-party messages can be received and directly influence tool actions and orchestration.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 21, 2026, 04:42 PM
Issues
1