nansen-wallet-deep-dive
Warn
Audited by Snyk on Mar 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). SKILL.md explicitly calls "nansen research profiler" commands to fetch on-chain transactions, labels, balances, PnL and counterparty data from Nansen (a third‑party public analytics service), which the agent is expected to read and use—exposing it to untrusted public/user-generated content that can influence decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata