profile-website-bot-detection
Warn
Audited by Snyk on Mar 3, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill explicitly loads arbitrary target websites (scripts/test-kernel-bot-detection.ts calls page.goto(CONFIG.targetUrl)), evaluates page content via page.evaluate and inspects network responses/headers/cookies, and then uses those untrusted public webpage contents to determine vendor detections and blocking verdicts that drive its decisions and outputs.
Audit Metadata