analyzing-liquidity-pools

Warn

Audited by Snyk on Mar 11, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's PoolFetcher explicitly queries open third-party APIs (The Graph subgraphs and DeFiLlama/CoinGecko endpoints as shown in PoolFetcher._fetch_from_subgraph, _fetch_all_pools and config/settings.yaml) and ingests that public data into calculations and reporting that directly influence analysis and next actions, so it consumes untrusted third‑party content that could carry indirect injection vectors.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 11, 2026, 09:12 PM
Issues
1