rebuild-section
Warn
Audited by Snyk on Jul 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.65). This required workflow has the agent read the orchestrator-provided “source HTML” and “styledHtml” (both raw HTML text snapshots) for the specific section, and those fields can originate from an outside party’s content (e.g., scraped/forwarded site content), which would then be ingested into the LLM context during step “Read the
styledHtml… and the source HTML” in SKILL.md.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata