seo-optimizing
Warn
Audited by Snyk on Mar 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly fetches and scrapes Google Search Console data (via the "Browser Path" using the Claude Code browser extension, the API path, and CSV exports described in SKILL.md Phase 1/Phase 2) which contains user-generated search queries and page data that the agent is required to read/interpret and directly use to drive optimizations (Phase 3 analyses and Phase 5 content/title rewrites), so untrusted third‑party content can materially influence agent decisions.
Audit Metadata