opened-daily-newsletter-writer

Warn

Audited by Snyk on Mar 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's Phase 1 "Content Curation" workflow explicitly requires creating Source_Material.md with URLs and key quotes and instructs linking to original sources (e.g., "link to the original source (e.g., 50can.org)"), which demonstrates the agent will fetch and ingest public third‑party content (including user‑generated items like viral social posts mentioned in examples) and use that content to drive angles, subject lines, and publishing actions—meeting the criteria for indirect prompt injection risk.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 15, 2026, 02:19 AM
Issues
1