gog
Warn
Audited by Snyk on Jul 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required runtime workflow runs the
gogCLI to fetch and parse the user’s Gmail/Calendar/Drive/Docs content (e.g.,gmail searchand especiallygmail thread get ... --sanitize-content), and that fetched prose can include outsider-authored text from other senders/creators (emails, docs, events), which is then provided as tool output/JSON into the agent’s LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata