seo-forge
Warn
Audited by Snyk on Mar 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The skill explicitly performs live SERP and PAA fetching via DataForSEO (and falls back to web_search when not configured) as part of its mandatory Phase 1 research (see "DataForSEO Integration", "Phase 1: Research", and scripts/seo-research.sh), so it ingests open/public third‑party pages and uses that content to drive decisions about outlines, hooks, and drafting.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata