linkup-workflow
Warn
Audited by Snyk on Aug 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The required runtime workflow “Linkup Build Workflow” builds step-by-step Linkup calls from user-described goals, and those calls explicitly perform web scraping/search (/v1/search known-URL scrapes and /v1/research multi-source investigations) which causes the LLM to ingest outsider-authored free text from the retrieved web content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata