prompt-engineering

Warn

Audited by Snyk on Mar 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's documentation explicitly instructs the agent to perform external searches and tool calls whose observations feed back into reasoning—e.g., references/react.md defines SEARCH[query] actions and observations, and references/prompt-chaining.md shows web_search/vector_search tool_call steps whose results are used to drive subsequent steps—so the agent will fetch and interpret untrusted third‑party content that can change its actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 15, 2026, 10:39 PM
Issues
1