daily-report-generator

Warn

Audited by Snyk on Mar 5, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill explicitly ingests user-populated third-party data via Google Sheets/n8n (see "From n8n Project Management System" and the n8n workflow nodes that read Tasks/Workers sheets using gspread/Google Sheets), and those spreadsheet/task records are parsed and used to drive report content and distribution actions, so untrusted user-generated content could materially influence behavior.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 5, 2026, 04:28 AM