linkfox-seerfar-ozon-shop-search

Warn

Audited by Snyk on Aug 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). The runtime workflow scripts/seerfar_ozon_shop_search.py accepts user-provided JSON (notably id and page) and posts it to POST /seerfar/ozon/shopSearch, then ingests and outputs the returned product fields (including free-text-like strings such as imageUrl and any message/errmsg text) without requiring a first-party trusted selection step.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 17, 2026, 07:03 AM
Issues
1
Security Audit — snyk — linkfox-seerfar-ozon-shop-search