api-testing

Warn

Audited by Snyk on Jun 26, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). The required runtime workflow for Pact provider verification pulls pact files from an external Pact Broker (pactBrokerUrl: 'https://pact-broker.company.com'), and those broker-delivered pact contents are free-form text/JSON that the verifier ingests into the agent/LLM context (indirect prompt injection risk via untrusted broker content).

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 26, 2026, 09:13 PM
Issues
1
Security Audit — snyk — api-testing