exa-search
Warn
Audited by Snyk on Jun 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Outsider free text can be ingested when the required runtime workflow calls Exa’s web search and/or URL extraction (
client.search_and_contents/client.get_contents), which returns scraped page text authored by third parties (public web content) and places it into the JSON fields (text,highlights) that the agent would then include in its LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata