douban-movie-review
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill's README and example explicitly instruct the agent to visit the public site https://www.douban.com and extract the top short reviews (user-generated comments), and the scripts/browser-use.py runs a browser task (agent.browser.execute_task) that will fetch and read that untrusted third‑party content.
Audit Metadata