formcan
Warn
Audited by Snyk on Apr 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's SKILL.md explicitly lets the agent fetch and read external FormCan data (e.g., "Get Submission" returns submission data including form responses, attachments" and the "membrane request CONNECTION_ID /path/to/endpoint" proxy) which ingests user-generated, untrusted content from a third-party service that can influence subsequent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata