keyword-research

Warn

Audited by Snyk on Mar 9, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). The skill's Data Sources and Competitive Research sections explicitly state it will automatically pull SERP analysis and fetch metrics from connected SEO tools/search console and competitor URLs (e.g., "Automatically pull ... SERP analysis" and "What keywords is [competitor URL] ranking for"), which means the agent will ingest and act on untrusted public web content as part of its workflow.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 9, 2026, 02:30 PM