stitched-full-page-capture
Warn
Audited by Snyk on Aug 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The script
scripts/stitch_full_page_capture.mjsopens each manifest-provideditem.pageUrlwith Playwright (page.goto) and then ingests the resulting page’s rendered content via viewport screenshots (page.screenshot) to stitch crops, so outsider-submitted free text can be included through the target page URL’s authored HTML.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata