pal-mcp-expert
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill's "Web Search Integration" (Advanced Features) and the "apilookup" utility explicitly perform automatic web searches and live API/SDK lookups—enabled by default—which fetch and incorporate content from public websites/third‑party sources that the agent reads and uses in its workflows, exposing it to untrusted external content.
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 1.00). The MCP configuration invokes uvx to fetch and run the package at runtime via the URL git+https://github.com/BeehiveInnovations/pal-mcp-server.git (e.g., "uvx --from git+https://github.com/BeehiveInnovations/pal-mcp-server.git pal-mcp-server"), which causes remote code to be fetched and executed as a required runtime dependency for the skill.
Audit Metadata