deliverability-qa
Warn
Audited by Snyk on Aug 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In
deliverability-qathe runtime reads user-supplied “campaign/creative HTML for the content/link/render scan” and DMARC RUA report/DNS/seed-test exports as untrusted text, so an outsider can inject poison by submitting free-form report contents/HTML that the LLM processes.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata