tender-assessment
Warn
Audited by Snyk on Mar 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). This skill explicitly runs a scraper (vic_tenders_scraper.py) against the public tenders.vic.gov.au site and uses WebFetch to retrieve and interpret tender detail pages as part of its required workflow to score opportunities and generate pursuit packages, so external public content can directly influence its decisions and actions.
Audit Metadata