Meta Dispatcher & Task Orchestrator

Warn

Audited by Snyk on Mar 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The SKILL.md explicitly includes a "Phase 1: 数据发现/采集 (Discovery/Scraping)" flow and an example ("福袋自动化") that directs the agent to automatically search live streams and public seller pages using browser automation/ discovery skills (e.g., 04_Tester_BrowserAutomation, 01_Discovery_GitHubSearch), which requires fetching and interpreting untrusted, user-generated public web content that can change subsequent actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 15, 2026, 07:04 AM
Issues
1