elegant-reports

Warn

Audited by Snyk on Mar 28, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). The skill's SKILL.md "Creating New Templates" workflow explicitly instructs using the browser tool to navigate to public design pages (e.g., "browser navigate https://www.canva.com/templates/...") so the agent is expected to fetch and study untrusted, user-generated web content as part of template creation, which could materially influence subsequent template/CSS decisions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 28, 2026, 05:07 PM
Issues
1