posthog-pls-transition-leads
Warn
Audited by Snyk on Apr 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill explicitly instructs the agent to perform web searches for company research (SKILL.md Step 3 / README "Web search") and to "fetch every link in the draft to confirm it resolves" (SKILL.md Step 7), which requires ingesting untrusted public webpages/URLs that can influence outreach content and subsequent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata