layer2

Warn

Audited by Snyk on Feb 19, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The SKILL.md explicitly instructs fetching the external public URL https://ethskills.com/l2s/SKILL.md, meaning the agent would read untrusted third-party content from that site which could contain instructions influencing its behavior.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 19, 2026, 07:10 PM