book-to-research
Warn
Audited by Snyk on Jun 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required runtime workflow ingests the user-provided PDF text via
pdftotext(orpymupdf), and that PDF content is authored by the book’s publisher/outsider rather than the operating user, so the LLM context can receive outsider-authored free-form prose/formulas extracted from the PDF.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata