ln-005-multi-agent-context-review
Warn
Audited by Snyk on Mar 7, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill's MCP Ref Research step (7d) explicitly uses the research_tool_fallback chain which includes "WebSearch" to fetch external RFCs/docs and the Compare & Correct step (7e) then applies edits to plan files based on those external findings, meaning untrusted public web content can be ingested and directly influence agent decisions and file modifications.
Audit Metadata