competitor-intel-agent
Warn
Audited by Snyk on Apr 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md explicitly instructs the agent to use WebFetch/WebSearch to fetch and ingest public competitor pages (pricing pages, feature/changelog pages, blogs/resources, careers pages, news) as part of its Detection protocol and Monitoring Dimensions, meaning untrusted third‑party content from arbitrary public websites is read and used to drive analysis and alerts.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata