getform
Warn
Audited by Snyk on Apr 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's SKILL.md shows using the Membrane CLI to list/run actions and proxy arbitrary requests to the Getform API (e.g.,
membrane action list,membrane action run, andmembrane request CONNECTION_ID /path/to/endpoint), which fetches user-submitted form data from the public Getform service (https://getform.io) that is untrusted/user-generated and can be read and used by the agent as part of its workflow.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata