Fail
Audited by Snyk on Mar 16, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (high risk: 0.90). The skill explicitly instructs the agent to load a local "PAI" context file containing contacts, security rules, voice IDs, and personal preferences—instructions unrelated to PDF processing that direct the agent to access sensitive/local data and change its broader behavior, which is a deceptive/out-of-scope instruction.
Issues (1)
E004
CRITICALPrompt injection detected in skill instructions.
Audit Metadata