webhooks
Warn
Audited by Snyk on Aug 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The
webhooksskill’s runtime workflow ingests outsider-authored free text at the HTTP webhook endpoint by reading the raw request body (and related headers) that an external system posts into the receiver for signature verification before enqueueing.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata