dum-dum
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Runtime path
collect.py→find_transcripts()scans~/.claude/projects/**.jsonlsession transcripts andscan_transcript()readsrecord["content"]/record["reason"]/tool inputs from those JSONL lines to produceuser_correction,hook_denial, etc.; this ingest is not restricted to first-party/authenticated text and could include outsider-authored transcript text if the attacker can get content into the user’s session logs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata