sveltekit-remote-functions
Fail
Audited by Snyk on Feb 24, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (medium risk: 0.60). The prompt includes an HTML-commented "LLM WORKFLOW" and editing/validation instructions unrelated to SvelteKit remote-function guidance, i.e., hidden meta-instructions that could direct an agent to perform out-of-scope actions.
Audit Metadata