search-specialist

Warn

Audited by Snyk on Feb 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's "WebFetch Deep Dive" and output requirements (e.g., "Extract full content from promising results", "curated findings with source URLs", and "search broadly") show it fetches and ingests content from public web pages and URLs, which are untrusted third‑party sources that could carry indirect prompt injections.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 17, 2026, 06:33 PM