backlink-audit
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill calls SemRush and Ahrefs APIs (e.g., the SemRush "backlinks" / "backlinks_overview" and "anchors" endpoints and the Ahrefs "backlinks", "refdomains", and "anchors" endpoints) to ingest source_url, source_title, anchor text and other data from arbitrary public websites/referring domains — untrusted, user-generated web content that the agent is explicitly instructed to read and analyze as part of the audit workflow.
Audit Metadata