wcag-compliance-checker

Warn

Audited by Snyk on Mar 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The SKILL.md "Run Automated Scan" instructions explicitly run axe/pa11y/Lighthouse against arbitrary public URLs (e.g., "npx axe https://your-site.com", "npx pa11y --sitemap https://your-site.com/sitemap.xml"), so the skill ingests untrusted third‑party web content that could influence analysis and follow-up actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 10, 2026, 02:23 AM