news

Warn

Audited by Snyk on Mar 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). SKILL.md explicitly instructs the agent to open and snapshot public news websites (e.g., https://www.chinanews.com/society/, https://cpc.people.com.cn/) and extract/summarize page content, which exposes the agent to arbitrary third‑party webpage content that could carry indirect prompt injections.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 4, 2026, 04:08 PM