odoo-19
Warn
Audited by Snyk on Mar 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 1.00). The AGENTS.md explicitly instructs agents to fetch the Git repository git@github.com:unclecatvn/agent-skills.git (and via "npx skills add unclecatvn/agent-skills"), which would be loaded by the agent at runtime/installation and directly provides the skill content that controls agent prompts/instructions.
Audit Metadata