open-notebook

Warn

Audited by Snyk on Oct 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). The skill involves ingesting web pages and arbitrary documents as sources (/api/sources) which are then processed and searched via LLM chat and search endpoints, allowing untrusted external content to enter the agent's context window.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Oct 1, 2026, 07:50 AM
Issues
1
Security Audit — snyk — open-notebook