replicate-theme
Warn
Audited by Snyk on Jul 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required runtime path consumes outsider-authored free text by loading/splitting carried
html/*.htmlextracted from the (user-supplied) site via/liberateand then inserting that raw HTML verbatim into the model’s workflow-generated theme/core/htmlislands (i.e., untrusted page markup becomes readable prose that the agent/toolchain processes).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata