dynamic-content-extraction
Warn
Audited by Snyk on Aug 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The workflow ingests outsider-authored free text when it opens and scroll-extracts arbitrary JavaScript-heavy web pages (via
browser_snapshot,browser_scroll, and in-page TreeWalker overdocument.body) to recover prices/listings from whatever page the user targets.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata