industry-chain-mapper

Warn

Audited by Snyk on Mar 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's required workflow and data instructions (references/data-queries.md and references/methodology.md) explicitly direct running shared scripts that fetch public third‑party data sources (e.g., 东方财富/同花顺/AKShare/国家统计局/company announcements and other web data) which the agent is expected to read and use to drive analysis and decisions, creating a clear path for untrusted external content to influence behavior.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 10, 2026, 03:23 AM