poteto-mode
Warn
Audited by Snyk on Aug 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the required Orchestrate runtime,
scripts/orch/orch.tsuses the store evidence files that can be user-supplied viaorch inbox push --report <path>and thenscripts/orch/store.tsreads those.tsv/gates.md/frontier.jsontext files (freeform cell fields) into memory to render status and drive gate logic.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata