strategic-revision
Warn
Audited by Snyk on Aug 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The required runtime workflow ingests outsider-authored free text by reading an arbitrary, user-supplied/auto-discovered referee comments PDF (Phase 1→2: copies it from the project filesystem and then “Read Reviews” extracts numbered comments) and then uses that text for atomic parsing/classification and master-plan generation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata