core-actionbook

Warn

Audited by Snyk on Jun 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.75). The required runtime workflow uses search_actions/get_action_by_id to fetch “action manuals” and page details (including content previews and DOM/selector text) from URL-based action IDs, which implies ingestion of public web page-derived free text authored by outsiders via the tool outputs.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 25, 2026, 05:48 PM
Issues
1
Security Audit — snyk — core-actionbook