aliyun-happyhorse-videoedit
Warn
Audited by Snyk on Apr 29, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill accepts arbitrary public HTTP/HTTPS URLs for the input video and reference images (see SKILL.md "input.media" url fields and the scripts/edit_happyhorse.py --video / --reference-image arguments), which are untrusted third‑party assets the service ingests and uses to determine editing behavior and therefore can materially influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata