dogfood
Warn
Audited by Snyk on Jun 29, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). In
scripts/dogfood.shtheexploresubcommand composes a web-app exploratory workflow that readsreferences/exploratory-issue-taxonomy.md(bundled) and then usesagent-browserto open a runtime-supplied--url/detected site; the resulting page content, errors, and console text from that outsider web content can be ingested into the agent’s LLM context via the browser session.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata