wcag-compliance-checker
Warn
Audited by Snyk on Mar 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md "Run Automated Scan" instructions explicitly run axe/pa11y/Lighthouse against arbitrary public URLs (e.g., "npx axe https://your-site.com", "npx pa11y --sitemap https://your-site.com/sitemap.xml"), so the skill ingests untrusted third‑party web content that could influence analysis and follow-up actions.
Audit Metadata