financial-analysis-earnings-preview
Warn
Audited by Snyk on Apr 3, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The SKILL.md workflow explicitly requires performing web searches to fetch earnings dates and consensus estimates from public websites ("Step 1 — Find earnings date and consensus (web search)" / Search A and Search B), which are open third‑party sources whose user-generated or untrusted content the agent must read and use to form consensus-driven scenarios and actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata