fandhe-backend
Warn
Audited by Snyk on Aug 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). 本スキルの要求ランタイムは HTTP サーバ accept ループであり、LLMが取り込むのはクライアントからのリクエストヘッド/ボディ(外部の自由テキスト)だけで、特定の項目選択なしに経路全体で処理され得るため。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata