n8n-builder

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill explicitly documents and templates RAG/document loaders and HTTP/GitHub integration nodes (e.g., references/rag.md's documentGithubLoader, references/integrations.md httpRequest/webhook, and templates/workflow.template.md vector store + agent connections) that ingest public/third‑party content and feed it into the AI Agent, so the agent is expected to read untrusted external content.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 09:52 PM