design-concepts
Warn
Audited by Snyk on Mar 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly instructs using web_search and web_fetch (e.g., Dribbble, Behance, Awwwards) in Step 3 to gather public/user-generated visual references and to incorporate those findings into mood boards and concept decisions, meaning it ingests untrusted third‑party web content that can influence agent actions.
Audit Metadata