pipa-setup
Warn
Audited by Snyk on Aug 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). [Optional company website reading is gated: it only ingests outsider-authored free text when the user explicitly provides a company URL and requests drafting help, and the workflow is “read-only and best-effort” with explicit confirmation before saving facts; it does not monitor/consume a queue/feed or unspecific submission stream.]
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata