prp-generator
Warn
Audited by Snyk on Feb 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill explicitly requires mandatory external research and WebSearch in "Phase 3: External Research (Mandatory)" and directs the agent to search and ingest content from public sites (e.g., GitHub, StackOverflow, blog posts, and other public documentation URLs), so the agent will fetch and interpret untrusted, user-generated third-party content.
Audit Metadata