replica

Warn

Audited by Snyk on Aug 26, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). In replica Phase 4 (source-fidelity gate), the workflow uses Playwright to fetch and measure attacker-controlled free text by navigating to the user-provided LIVE="https://<site>/<path>" URL and then running diff probes that read the resulting page content (content-diff.mjs/visual-diff.mjs) and stitch/pixel-compare (stitch-shot.mjs).

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 26, 2026, 03:47 PM
Issues
1
Security Audit — snyk — replica