apollo-core-workflow-a
Warn
Audited by Snyk on Mar 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The skill's SKILL.md shows runtime calls to external Apollo APIs (e.g., apollo.searchPeople in src/services/apollo/people-search.ts and apollo.enrichOrganization/person in company-enrichment.ts and contact-enrichment.ts) that ingest third-party contact/profile data from the public web which the agent reads and uses to make enrichment and lead-generation decisions, so untrusted external content could influence behavior.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata