competitive-visual-audit

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's templates and "Individual Competitor Profile" explicitly instruct capturing competitor "Website" content, "Sample Language" from their site, and "What Users Love" "from reviews/comments," which implies fetching and interpreting arbitrary public websites and user-generated reviews (untrusted third-party content).
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 09:35 PM