deepagents-thread-inspector
Warn
Audited by Snyk on Aug 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL.md/scripts/inspect_sessions.py loads and deserializes message content from a local outsider-accessible SQLite file (sessions.db checkpoints/writes) based on user-supplied THREAD_ID/prefix, so any text stored there by an outsider would be ingested into the runtime.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata