debug-plugins
Warn
Audited by Snyk on Jul 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The required workflow reads
/tmp/claude-commandand/tmp/claude-code.log(both generated from the user’s configured plugin/skill environment) and inspects plugin zips from/mnt/account-plugins/, whose contents are authored by whoever built/configured the deployment (outsider text) and can be ingested as readable text during log/zip inspection.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata