xiaodou-cover-generator
Warn
Audited by Snyk on Aug 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). 该 skill 的运行时工作流在 Step 1/2 将用户提供的文章内容/主题作为输入并纳入 Step 2 所撰写的绘图 Prompt,再在 Step 3 调用
generate_image(且仅靠固定垫图 ImagePaths 防漂移),因此会让第一方工作流去读取“外部用户文本”并转成可被模型消化的自由文本。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata