helios-renderer
Warn
Audited by Snyk on Mar 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's render(compositionUrl, ...) workflow fetches and loads arbitrary web pages (composition URLs) and in DOM mode explicitly discovers and interprets DOM/media elements and attributes (e.g., data-helios-offset, data-helios-seek, implicit audio/video tags, recursive Shadow DOM traversal) which are untrusted third-party content that can change rendering behavior; this appears in the SKILL.md rendering workflow.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata