data-engineering

Warn

Audited by Snyk on Mar 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's Data Collection code explicitly calls requests.get(source.connection["url"]) (allowing arbitrary API/URL inputs) and the Data Versioning example uses dvc.api.get_url(... repo='https://github.com/org/repo'), meaning the agent can fetch and interpret untrusted public web/API content that can influence downstream decisions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 10, 2026, 03:06 AM