browser-video-recording
Warn
Audited by Snyk on Aug 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In SKILL.md the required runtime workflow uses “browser:control-in-app-browser” to navigate/load an external “requested page” and then consumes the resulting screenshot frames at runtime, meaning outsider-authored free text can be supplied via the page content and incorporated into the LLM’s input (directly or as extracted/recognized text) during the browsing/search/navigation phase.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata