dns-email-auth
Warn
Audited by Snyk on Jul 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The workflow runs
digto fetch DNS TXT records (SPF/DKIM/DMARC) from the user-supplied domain; these are outsider-authored public DNS content that the agent reads as free-form text at runtime (e.g.,dig +short TXT "$DOMAIN"anddig +short TXT "$s._domainkey.$DOMAIN").
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata