shopify-broken-link-doctor
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the required
auditworkflow, the outsider-supplied--urldrives public HTTP crawling (HTML/XML/headers/links) viacheckShopify → discoverPaths → extractInternalPaths → inspectPath → fetchPublic/sameHostRequest, which ingests free text from the target storefront before any specific item selection beyond host/robots validation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata