extract-from-pdfs
Warn
Audited by Snyk on Aug 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Step 3 “Extract Data from PDFs” reads user-supplied PDF binaries from
--pdf-dir/--source-derivedpdf_pathand ingests their extracted content via Claude’s PDF vision (base64 upload) inscripts/03_extract_from_pdfs.py, so outsider-authored text can be supplied by posting/adding poison PDFs into the pipeline inputs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata