brainstorming
Warn
Audited by Snyk on Aug 2, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The required workflow “Visual Companion” reads the user’s browser click text from the persisted file
$STATE_DIR/events(written from WebSocket messages inscripts/server.cjs), which contains free text originating from the outsider’s interaction/selection.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata