reddit-insights
Warn
Audited by Snyk on Mar 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill explicitly fetches and ingests user-generated content from Reddit via the public JSON API (e.g., https://www.reddit.com/search.json and post permalink .json) and instructs the agent to analyze those third‑party posts and comments to drive sentiment, pain‑point extraction, and recommendations, so untrusted content can materially influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata