dineway-social-plan
Warn
Audited by Snyk on Aug 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Runtime path “Source Selection” fetches the deployed public site homepage and linked public pages (e.g., “/menu”, “/reviews”, “/blog”, “/news”) based on .dineway/deploy.json, so outsider-authored free text on those pages can be ingested for evidence extraction without additional item selection.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata