deploying-software-defined-perimeter

Warn

Audited by Snyk on Mar 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's bundled scripts clearly fetch and parse data from user-supplied network endpoints (e.g., scripts/agent.py's SDPControllerClient posting to controller_url and GETting /admin/* endpoints, and scripts/process.py scanning hosts and reading TLS/certificate responses), and those untrusted responses are interpreted to produce reports and findings, exposing the agent to untrusted third‑party content that could influence behavior.

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.90). The skill instructs installing and configuring system-level components (controllers/gateways), changing firewall/default-drop rules, opening listeners and managing certificates—operations that modify host state and require elevated privileges—so it encourages actions that can compromise the machine.

Issues (2)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 16, 2026, 07:56 AM
Issues
2