T08 · Insecure Dependencies
- Location
SKILL.md:43- Finding
Unpinned Third-Party Package Download and Execution
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill is mostly a normal diagram helper, but its image-rendering instruction can download and run an unpinned third-party CLI without confirmation.
Install only if you are comfortable with the agent potentially running a package fetched from the npm registry when rendering images. Prefer pinning `@mermaid-js/mermaid-cli` to a reviewed version, installing it through a lockfile, and running the renderer with limited filesystem and environment access.
SKILL.md:43Unpinned Third-Party Package Download and Execution
The skill instructs use of npx -y @mermaid-js/mermaid-cli without pinning a specific version, which causes execution of whatever package version is current at runtime. Because this is a CLI fetched from the registry and executed immediately, a compromised upstream release or unexpected breaking update could lead to arbitrary code execution on the user's machine or CI environment.
No suspicious patterns detected.