grad-systematic-review
Warn
Audited by Snyk on Apr 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md "Step 2: Execute the Search Strategy" explicitly requires searching and ingesting records from public third‑party sources (e.g., Scopus, Web of Science, PubMed, PsycINFO, grey literature and hand‑searched journals), and those retrieved documents are expected to be read and used to make inclusion/exclusion and synthesis decisions, which could allow untrusted external content to influence agent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata