mots-transaction-semantics

Warn

Audited by Snyk on Apr 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The SKILL.md explicitly instructs running the MoTS/BlockchainSpider Scrapy spiders (e.g., blocks.eth, blocks.semantic.eth, labels.action) which fetch transactions from public RPC providers and Etherscan-class APIs and use those external labels/contents as part of the semantic/labeling workflow, so untrusted third‑party data can be ingested and influence downstream decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 15, 2026, 11:00 PM
Issues
1