research-compendium
Warn
Audited by Snyk on Aug 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the runtime workflow described for
research-compendium(Phase 1/2), the agent performsgbrain query/searchand then “archive every primary source” via web search/fetch tools, extracting and saving full text from outsider-authored web sources intoresearch/<topic-slug>/sources/(and later using archived corpus ingbrain lsd), creating an indirect prompt-injection surface from attacker-submitted content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata