list-affitor-program
Warn
Audited by Snyk on Mar 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill's required Workflow (Step 2: "Research from Official Sources") explicitly instructs the agent to perform web_search and extract data from public affiliate/partner pages, network listings, and pricing pages on the open web (affiliate page, network page, pricing page), which are untrusted third‑party sources whose content the agent must read and use to determine listing fields and actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata