Meta Dispatcher & Task Orchestrator
Warn
Audited by Snyk on Mar 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md explicitly includes a "Phase 1: 数据发现/采集 (Discovery/Scraping)" flow and an example ("福袋自动化") that directs the agent to automatically search live streams and public seller pages using browser automation/ discovery skills (e.g., 04_Tester_BrowserAutomation, 01_Discovery_GitHubSearch), which requires fetching and interpreting untrusted, user-generated public web content that can change subsequent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata