mat-synthesis-extraction
Warn
Audited by Snyk on Jun 19, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Step 1 uses
parse_pdfs.pyto extract plain text from runtime-provided PDFs in--pdf-dir(public/outsider-authored paper PDFs), which then become LLM-readable text in Step 2/3 via the<PAPER_TEXT>prompt.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata