swiftui-ui-patterns

Warn

Audited by Snyk on Feb 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's examples and wiring explicitly show fetching and rendering remote, user-supplied content — e.g., references/lightweight-clients.md (URLSession client), references/media.md (LazyImage/AsyncImage for remote images), references/deeplinks.md (resolving federated/external URLs), and references/form.md's AddRemoteServerView (accepting arbitrary server URLs) — so the app workflow would consume untrusted third‑party/user-generated content as part of normal operation.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 17, 2026, 01:54 PM