dt-obs-frontends

Warn

Audited by Snyk on Apr 3, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). The skill's required workflows explicitly query and interpret untrusted RUM event data via "fetch user.events" (see SKILL.md and references like CSPViolations.md and FrontendErrors.md), including fields such as page.source.url.domain, csp.blocked_uri.full, csp.sample, and exception.stack_trace which originate from external/user-provided webpages or third-party resources and are used to drive diagnostics and remediation decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 3, 2026, 05:16 AM
Issues
1