cover-letter
Warn
Audited by Snyk on Jun 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Runtime path: Step 1 “If $ARGUMENTS is a URL” uses Claude in Chrome MCP tools to fetch the job posting page text (public web content) via
get_page_text/page extraction, which is outsider-authored free text inserted into the agent context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata