bbb-estatisticas
Warn
Audited by Snyk on Mar 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). This skill explicitly instructs the agent to fetch and scrape public, user-edited pages (scripts/bbb-participantes.py, bbb-historico.py, bbb-geral.py all GET https://pt.wikipedia.org/wiki/Big_Brother_Brasil_) and to use the search_web tool to validate claims against external sites (Gshow, BBBStats on X/Twitter, and news portals), which the agent must read and interpret as part of its workflow—exposing it to untrusted third‑party content that can materially influence actions and outputs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata