share-skill
Warn
Audited by Snyk on Feb 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill fetches and renders user-generated content from public sources — e.g., the docs/site code loads SKILL.md files via raw.githubusercontent.com, calls the GitHub API for avatars/metadata, and pulls scripts/assets from public CDNs (and installs plugins from arbitrary GitHub repos), so untrusted third‑party content would be ingested and interpreted at runtime.
Audit Metadata