sanity-best-practices

Warn

Audited by Snyk on Feb 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). This skill’s migration guide (rules/migration-html-import.md) explicitly fetches and parses external HTML (e.g., fetchWordPressPosts(), htmlToBlocks(post.content)) and downloads external images (uploadImage fetching imageUrl), so the agent is expected to ingest untrusted, user-generated web content and act on it (createOrReplace documents), allowing third‑party content to influence tool actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 25, 2026, 01:40 PM