competitor-monitor

Warn

Audited by Snyk on Feb 27, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's Process step 2 explicitly instructs the agent to fetch and interpret public third‑party content (e.g., competitor websites, Google Ads Transparency Center, Meta Ad Library, and social media profiles) as baseline data, which could contain untrusted/user‑generated material capable of influencing subsequent monitoring, alerts, or actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 27, 2026, 01:02 PM