html-ppt
Warn
Audited by Snyk on Aug 3, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Runtime path
assets/runtime.js(presenter-mode): when the user triggers presenter mode viaS,buildPresenterHTML()extracts each slide’s.notesHTML (note.innerHTML) from the deck DOM (authored from the user/agent’s free text) and injects it into the presenter windownotesBody.innerHTML, so outsider-authored text can be rendered verbatim as HTML at runtime.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata