slack
Warn
Audited by Snyk on Aug 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The Slack runtime workflow reads outsider-authored free text from a user-controlled Slack workspace surface (e.g., channel message text via
conversations.historyand search results viasearch.messages) using thescripts/slack-clireads that are driven by the user’s query/scope before any mutation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata