odoo-19

Warn

Audited by Snyk on Mar 9, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

  • Potentially malicious external URL detected (high risk: 1.00). The AGENTS.md explicitly instructs agents to fetch the Git repository git@github.com:unclecatvn/agent-skills.git (and via "npx skills add unclecatvn/agent-skills"), which would be loaded by the agent at runtime/installation and directly provides the skill content that controls agent prompts/instructions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 9, 2026, 05:49 AM