meeting-recap
Warn
Audited by Snyk on Jul 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required runtime workflow ingests the user-provided meeting transcript (including any outsider-authored free text within it) via
scripts/normalize_transcript.pyreading a file path or stdin, then passes the extractedsegments[].textinto the agent’s LLM context for recap generation—this is an outsider-content injection surface because the transcript text is not authored by the operating user.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata