five-questions
Warn
Audited by Snyk on Jun 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Outsider-authored free text is the user-supplied PDF’s extracted body text: Step 3 converts
{pdf_path}into{work_dir}/paper.mdviamarkitdown, and Steps 4–6 feed that{work_dir}/paper.mdcontent into the Q-agents and compiler LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata