market-sizer
Warn
Audited by Snyk on Apr 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's execution workflow (references/full-guide.md, Step 3 "Top-Down Analysis") explicitly instructs the agent to "look up reports" and use public third‑party sources (Gartner, Statista, IBISWorld, CB Insights, government census data, trade association reports), meaning the agent is expected to fetch and interpret untrusted public content that can materially influence sizing calculations and next actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata