skills-radar
Warn
Audited by Snyk on Aug 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Skills Radar ingests outsider-authored free text at runtime from user-confirmed external sources, specifically by parsing the provided job-description text and performing WebSearch sampling of current postings (gap-analysis step 1-2), and also by reading public GitHub repository content the user confirms as theirs (skills-inventory enrichment layer 2).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata