coingecko
Warn
Audited by Snyk on Aug 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The required runtime workflow issues HTTP requests to CoinGecko on-chain endpoints (e.g., token/pool/search/ohlcv/trades) and ingests the provider’s JSON responses, but there is no step where outsider-authored free text can be posted into a monitored queue/feed that the workflow reads without the caller first providing specific identifiers/queries.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata