obsidian-clipper-template-creator
Warn
Audited by Snyk on Feb 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). This skill explicitly requires fetching and analyzing arbitrary user-provided web pages (see SKILL.md step "Fetch & Analyze Reference URL" which mandates using WebFetch or a browser DOM snapshot, and references/analysis-workflow.md showing WebFetch of example public URLs), so untrusted third‑party page content can be read and used to determine selectors and template behavior.
Audit Metadata