web-navigation-strategies

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). This skill explicitly directs the agent to navigate and scrape arbitrary public websites (e.g., mcp_playwright.navigate(url) and site-specific examples like Reddit, Twitter/X, Medium, Naver blogs and public news sites) and to extract posts/comments/metadata, meaning it ingests untrusted, user-generated third-party content that could carry indirect prompt injections.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 01:51 AM