analyzing-liquidity-pools
Warn
Audited by Snyk on Mar 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's PoolFetcher explicitly queries open third-party APIs (The Graph subgraphs and DeFiLlama/CoinGecko endpoints as shown in PoolFetcher._fetch_from_subgraph, _fetch_all_pools and config/settings.yaml) and ingests that public data into calculations and reporting that directly influence analysis and next actions, so it consumes untrusted third‑party content that could carry indirect injection vectors.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata