raindrop

Warn

Audited by Snyk on Jun 3, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.65). Outsider-authored free text can enter the LLM context via runtime API responses that include user-controlled bookmark content (e.g., raindrop title, excerpt, note, highlights.text) returned by endpoints like GET /raindrops/{collectionId} or GET /raindrop/{id} and then pretty-printed by scripts/raindrop.sh into the agent’s context.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 3, 2026, 10:16 AM
Issues
1
Security Audit — snyk — raindrop