moralis-data-api

Warn

Audited by Snyk on Mar 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). This skill queries the public Moralis Web3 Data API and ingests off‑chain/user-provided fields (e.g., token_uri and metadata in rules/getContractNFTs.md and social/website "links" in rules/getDiscoveryToken.md), so the agent will read untrusted third‑party content that could contain instructions influencing subsequent behavior.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 4, 2026, 08:53 AM