flare

Warn

Audited by Snyk on Feb 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's required workflows (e.g., "flare list-error-occurrences" and "flare get-error-occurrence" in SKILL.md and references/workflows.md) instruct the agent to fetch and interpret occurrence data, code_snippet lines, attributes, and provider/AI "solutions" from the Flare service (flareapp.io), which are third-party, user-generated/untrusted contents that the agent uses to decide actions like resolving or snoozing errors.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 22, 2026, 06:17 AM