telegram-assistant

Warn

Audited by Snyk on Jun 11, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). At runtime the required “Digest” and “Style Extraction” workflows call telegram-mcp tools like list_messages/get_messages to ingest unread chat/channel message body text (outsider-authored by other Telegram participants) into the agent for summarization/style analysis.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 11, 2026, 02:13 AM
Issues
1
Security Audit — snyk — telegram-assistant