extract-methodology
Warn
Audited by Snyk on Jul 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). SKILL.md instructs the runtime workflow to run
scripts/parse_sections.pyonpaper_text.md(a paper’s full text provided by the user/workflow), and that script reads the input file contents and outputs extracted methodology/results text intosections.json, which the agent then “evaluates … secara mendalam” for extraction—so if the paper text originates from an outsider-authored source (e.g., fetched from web/arXiv/OpenAlex/PubMed), that free-form outsider prose is ingested into the LLM context via the extracted sections.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata