exa-search

Warn

Audited by Snyk on Jun 30, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). Outsider free text can be ingested when the required runtime workflow calls Exa’s web search and/or URL extraction (client.search_and_contents / client.get_contents), which returns scraped page text authored by third parties (public web content) and places it into the JSON fields (text, highlights) that the agent would then include in its LLM context.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 30, 2026, 08:07 PM
Issues
1
Security Audit — snyk — exa-search