forensics-osquery
Warn
Audited by Snyk on Jun 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). At runtime, osqueryd executes scheduled queries and ingests endpoint-derived free-text fields (e.g.,
processes.cmdline,processes.path,logged_in_users.host,file.path,registry.data) into the agent’s context via the skill’s evidence export/JSON parsing path (e.g.,./scripts/osquery_triage.sh > incident_triage_*.jsonand subsequent parsing), where those strings can contain attacker-controlled content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata