uml-diagram

Warn

Audited by Snyk on Mar 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

  • Potentially malicious external URL detected (high risk: 0.80). This skill sends diagram source to the public Kroki rendering service (https://kroki.io) at runtime — the server executes rendering engines on the supplied diagram code and the skill relies on that external service for rendering, meeting the conditions for remote execution risk.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 6, 2026, 12:33 AM