researching-azure-ai-sdk

Warn

Audited by Snyk on Mar 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). This skill's required "Delegation Pattern" in SKILL.md explicitly instructs the agent to search and ingest content from public GitHub repositories and public Microsoft docs (e.g., github.com/Azure/azure-sdk-for-net, github.com/microsoft-foundry/foundry-samples, and learn.microsoft.com links), which the agent will read and use to determine API usage and next actions, exposing it to untrusted third-party content that could inject instructions.

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 10, 2026, 03:25 PM