playwright-testing
Warn
Audited by Snyk on Apr 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md includes required "Dead Link Detection" and "Comprehensive Link Crawler" tests (e2e/tests/links.spec.ts and e2e/tests/site-links.spec.ts) that navigate to pages, extract arbitrary hrefs (including absolute external URLs), and issue requests/follow links based on that content, meaning the agent fetches and interprets untrusted third‑party webpages which can materially influence its actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata