review-an-app
Warn
Audited by Snyk on Aug 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The required runtime workflow ingests outsider-authored free text by serving/probing the user’s app pages (landing page/docs/legal/settings content and rendered HTML) and parsing their text/metadata as evidence, where an outsider can control those pages’ content by submitting or influencing app content (e.g., user-generated text, docs content, privacy-policy text shown by the app).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata