ai-local-search
Warn
Audited by Snyk on Mar 19, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md explicitly instructs running "AI search visibility scans" and "manual testing" against external platforms (e.g., ChatGPT, Gemini, Perplexity, Local Falcon) and cites third-party, user-generated sources (reviews, Yelp, social media, brand mentions) as inputs the agent should read and interpret to decide next actions, exposing it to untrusted public content from the open web.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata