chapter1-guide
Warn
Audited by Snyk on Feb 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md's "6. 웹 검색 가이드" explicitly instructs the agent to search, fetch and summarize open/public third‑party webpages and reports (e.g., .go.kr government pages, MarketsandMarkets, news sites, company VoC URLs) into chapter1_references.md and to use those sources as evidentiary input for chapter content, which exposes the agent to untrusted third‑party content that can influence actions.
Audit Metadata