design-prd
Warn
Audited by Snyk on Aug 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). README/docs and codebase files are only read from the project’s own repository via globs/grep in Step 0 (auto-detect context), while the only free-text “outsider” ingestion path is competitive web research (firecrawl search/scrape) which explicitly fetches a selected web result’s scraped markdown at runtime.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata