cyfe
Warn
Audited by Snyk on Apr 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). This skill integrates with Cyfe (SKILL.md "Overview" lists RSS Feed, Blog Post, Forum Post, Social Media Data, etc.) and provides a "Proxy requests" flow via Membrane to query the Cyfe API, which clearly exposes the agent to untrusted/public third‑party content that the agent can fetch and must read/act on.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata