news
Warn
Audited by Snyk on Mar 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). SKILL.md explicitly instructs the agent to open and snapshot public news websites (e.g., https://www.chinanews.com/society/, https://cpc.people.com.cn/) and extract/summarize page content, which exposes the agent to arbitrary third‑party webpage content that could carry indirect prompt injections.
Audit Metadata