unlimited-ocr-document-parsing

Warn

Audited by Snyk on Aug 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). In scripts/client.py, runtime OCR text is ingested from outsider-supplied file_url (public HTTPS URL) and downloaded at parse_baidu() lines 211-214 and _download() lines 178-190, then the returned markdown_url/parse_result_url are downloaded and decoded into LLM-ingested free text at lines 261-267.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 15, 2026, 03:04 AM
Issues
1
Security Audit — snyk — unlimited-ocr-document-parsing