Testing Blocks
Warn
Audited by Snyk on Feb 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's workflow instructs automated browser testing and performance checks that load preview/test URLs provided in PRs or by the CDD process (e.g., Playwright page.goto and the required PR Preview: https://branch--repo--owner.aem.page/path/to/test), so it will fetch and interpret public/untrusted page content as part of testing.
Audit Metadata