nansen-dca-watch

Warn

Audited by Snyk on Mar 9, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's workflow (SKILL.md) directly runs "nansen research" commands to fetch public on-chain analytics and token info (e.g., nansen research smart-money dcas, nansen research token info, token flow-intelligence), meaning the agent ingests untrusted third-party web/API content and uses it to drive decisions about token targets.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 9, 2026, 11:22 PM