create-plans

Warn

Audited by Snyk on Mar 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's required workflows (e.g., workflows/research-phase.md and the RESEARCH.md → FINDINGS.md flow described in SKILL.md and references/research-pitfalls.md) instruct the agent to fetch and evaluate public web sources (mentions using WebFetch/WebSearch and including URLs) and to use those research findings to drive PLAN.md content and subsequent actions, so it clearly ingests untrusted third‑party content that can influence decisions and tool use.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 4, 2026, 11:57 PM