sveltekit-remote-functions

Fail

Audited by Snyk on Feb 24, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E004: Prompt injection detected in skill instructions.

  • Potential prompt injection detected (medium risk: 0.60). The prompt includes an HTML-commented "LLM WORKFLOW" and editing/validation instructions unrelated to SvelteKit remote-function guidance, i.e., hidden meta-instructions that could direct an agent to perform out-of-scope actions.
Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 24, 2026, 05:26 PM