stablecoin-depeg-arbitrage
Warn
Audited by Snyk on Mar 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill explicitly fetches and interprets public third‑party data (e.g., DeFiLlama /pools, OnchainOS dex-market price, OKX/other CEX tickers via okx-trade-mcp, issuer pages like tether.to and circle.com, and news/search results) as mandatory steps in the Solvency Check and pre‑flight workflow, and those untrusted sources directly determine whether recommendations are BLOCKED or allowed, so they can materially influence the agent's decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata