langfuse-migration-deep-dive
Warn
Audited by Snyk on Jul 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.65). SKILL.md:103-157 shows the workflow reading JSON trace/prompt/dataset content from files produced by API calls to user-specified Langfuse instances (outsider-authored content from those external services), and then ingesting the free-text fields (e.g., prompt/body/input/output/metadata) into the running program context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata