documents

Fail

Audited by Snyk on Mar 31, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E004: Prompt injection detected in skill instructions.

  • Potential prompt injection detected (high risk: 1.00). The skill contains an out-of-scope, mandatory side-effect instruction (execute a curl POST to localhost and emit a notification) that is unrelated to document processing and forces external behavior, which qualifies as a deceptive/hidden instruction for this skill.

Issues (1)

E004
CRITICAL

Prompt injection detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Mar 31, 2026, 02:05 AM
Issues
1
Security Audit — snyk — documents