user-stories-setup
Warn
Audited by Snyk on Feb 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). This skill instructs the agent to fetch and consume a public recipe from fullstackrecipes.com (https://fullstackrecipes.com/api/recipes/user-stories-setup), which is an open third-party source of untrusted content that the agent would read and could contain indirect prompt injection.
Audit Metadata