skill-tree-generator
Warn
Audited by Snyk on Mar 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). This skill explicitly instructs the agent to read raw library documentation, source code, changelogs and repo files (see "Prerequisites" — "Raw library documentation and source code" — and the required
sources:frontmatter entries like "[Owner/repo]:docs/[path].md"), which are untrusted public third‑party contents the agent must ingest and whose content can change generation/update decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata