news-aggregator-skill

Warn

Audited by Snyk on Mar 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's scripts and documentation (scripts/fetch_news.py and SKILL.md) explicitly scrape and ingest untrusted public sources—Hacker News, Weibo, GitHub Trending, Product Hunt, V2EX, 36Kr, Tencent, Wallstreetcn—and in --deep mode fetch full article "content" that is then used for automated summarization and deep analysis, so third-party text can materially influence the agent's outputs and actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 6, 2026, 08:07 AM