gpc-vitals-monitoring
Warn
Audited by Snyk on May 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill explicitly fetches and processes Google Play user-generated reviews (see "REVIEW SENTIMENT ANALYSIS" / "Review monitoring" and references/review-management.md in SKILL.md), which are untrusted third-party content the agent reads/analyses and can act on (e.g., reply or drive gating/alerts), so it exposes the agent to indirect prompt-injection risk.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata