huashu-nuwa

Fail

Audited by Snyk on Aug 25, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.90). Several URLs point to installing or cloning code (GitHub repos and raw.githubusercontent assets) from a single, individual maintainer (alchaincyf) and include npx/git clone-style install instructions — untrusted personal GitHub/npm installs can execute arbitrary code and are commonly used to distribute malware.

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). SKILL.md 的 Phase 1 通过“6个Agent全部走网络搜索/平台获取信息”并允许调用如 agent-reachweb-article-reader 等工具来读取外部公开网页/社交平台文本,因此运行时会摄入用户可在互联网上投放的免费文本从而存在间接提示注入风险。

Issues (2)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 25, 2026, 06:46 AM
Issues
2
Security Audit — snyk — huashu-nuwa