news-aggregator-skill
Warn
Audited by Snyk on Mar 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's scripts and documentation (scripts/fetch_news.py and SKILL.md) explicitly scrape and ingest untrusted public sources—Hacker News, Weibo, GitHub Trending, Product Hunt, V2EX, 36Kr, Tencent, Wallstreetcn—and in --deep mode fetch full article "content" that is then used for automated summarization and deep analysis, so third-party text can materially influence the agent's outputs and actions.
Audit Metadata