Obsidian Automation
Warn
Audited by Snyk on Jun 3, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The “Web Clipper” automation ingests runtime free-form page/selection text from an outsider-controlled web page via
extract_content(browser extension provides{{selection}}/{{page.title}}/{{page.url}}), which can be fed into the agent/LLM context when generating or processing the clipping note.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata