apply-comments
Warn
Audited by Snyk on Jul 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required workflow reads
slides/<slideId>/index.tsxand parses/* @slide-comment ... text="...base64url(JSON)..." */markers (outsider-authored slide comments) into free-textnote/hintthat is then used to drive LLM reasoning/editing, creating an indirect prompt-injection path via the slide file’s embedded comment text.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata