moralis-data-api
Warn
Audited by Snyk on Mar 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). This skill queries the public Moralis Web3 Data API and ingests off‑chain/user-provided fields (e.g., token_uri and metadata in rules/getContractNFTs.md and social/website "links" in rules/getDiscoveryToken.md), so the agent will read untrusted third‑party content that could contain instructions influencing subsequent behavior.
Audit Metadata