idea-tournament

Warn

Audited by Snyk on Mar 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The SKILL.md workflow explicitly requires retrieving "relevant literature L" via "web search or provided papers" as part of Phase 1 (see "Before starting" step 2 and Phase 1: Tree-Structured Idea Generation), which instructs the agent to fetch and interpret open/public third-party content that can influence idea generation and subsequent actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 15, 2026, 10:52 AM
Issues
1