pi-log-analyzer

Warn

Audited by Snyk on Aug 11, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). 该技能的运行路径 scripts/analyze.py 在读取本地目录参数指定的 .log/*.jsonl/.log 文件并解析 JSON 字段(如 message 的 warn/error 内容)进行统计与输出,因此外部作者只要能向该日志目录投递/写入日志文本就可被 LLM 读取。

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 11, 2026, 02:49 PM
Issues
1
Security Audit — snyk — pi-log-analyzer