skill-creator-pro
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). This skill's Domain Discovery and Phase 1 guidance (e.g., "Sources priority: Official docs → Library docs (Context7) → GitHub → Community → WebSearch" and explicit "Fetch from official docs"/"WebSearch" instructions) directs the agent to fetch and ingest public web/GitHub/community content (untrusted/user-generated) and to read/interpret it as part of its workflow.
Audit Metadata