blue-ocean-strategy

Fail

Audited by Snyk on Apr 4, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E004: Prompt injection detected in skill instructions.

  • Potential prompt injection detected (high risk: 0.90). The prompt injects unrelated operational/testing instructions (access testing environment/API, run CLIs, apply configuration changes, and reference ${CLAUDE_SKILL_DIR}) that are outside the advertised Blue Ocean strategy scope and effectively direct system-level actions, so it contains a hidden/deceptive instruction.

Issues (1)

E004
CRITICAL

Prompt injection detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Apr 4, 2026, 12:34 PM
Issues
1