claude-agents
Warn
Audited by Snyk on Jul 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required workflow reads outsider-authored transcript content from
$PROJECTS_DIR/*/<sessionId>.jsonl(each line’smessage.contentblocks) and feeds it into the agent for summarization, which can include free text written by prior/other users inside that session.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata