xiaodou-cover-generator

Warn

Audited by Snyk on Aug 8, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). 该 skill 的运行时工作流在 Step 1/2 将用户提供的文章内容/主题作为输入并纳入 Step 2 所撰写的绘图 Prompt,再在 Step 3 调用 generate_image(且仅靠固定垫图 ImagePaths 防漂移),因此会让第一方工作流去读取“外部用户文本”并转成可被模型消化的自由文本。

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 8, 2026, 10:03 AM
Issues
1
Security Audit — snyk — xiaodou-cover-generator