paperclip-clarify
Warn
Audited by Snyk on Aug 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In
paperclip-clarify, the operator can provide a “Paperclip wiki URL, wiki page path, or captured wiki source as context” and the workflow explicitly usespaperclip-wiki-fetchto read that content before further questions, so outsider-authored wiki text can be ingested at runtime via that operator-supplied URL/path/source.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata