book-to-skill
Warn
Audited by Snyk on Jul 31, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Outsider-authored free text is ingested when a user supplies a
.txt“book file path” and the required workflow reads the book content (first ~500 lines, last ~200 lines, and each chapter/section) to extract frameworks/principles/techniques (workflows/convert-book.md and workflows/analyze-book.md).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata