matrixscan-ar-capacitor
Warn
Audited by Snyk on Apr 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.70). The skill expressly instructs the agent to fetch and verify Scandit documentation at runtime (which will directly determine the code and prompts it emits) — e.g. the full API reference https://docs.scandit.com/data-capture-sdk/capacitor/barcode-capture/api.html (along with the get-started page https://docs.scandit.com/sdks/capacitor/matrixscan-ar/get-started/ and the sample repo https://github.com/Scandit/datacapture-capacitor-samples/) — making those external URLs runtime dependencies that control the agent's output.
Issues (1)
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata