find-orders

Warn

Audited by Snyk on Aug 20, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). The required workflow reads outsider-authored free text because it performs LLM/browser-driven inspection of the user’s Amazon order history pages and order detail pages (including visible invoice/return/reorder text) via the runtime URL https://www.amazon.com/gp/css/order-history and subsequent order detail views.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 20, 2026, 09:18 PM
Issues
1
Security Audit — snyk — find-orders