slice-refactor
Warn
Audited by Snyk on Jun 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Step 3/4 load and read
.substrate/anti-pattern/INDEX.mdand matching anti-pattern bodies plusdocs/plans/<workflow_id>.mdand full test files; these are free-form markdown authored by parties other than the operating user (public/repo content), which can contain outsider text that becomes LLM-readable context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata