debug-flow
Warn
Audited by Snyk on Aug 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In SKILL.md, the runtime workflow reads Power Automate flow/run execution data via FlowAgent MCP tools such as get_run_history/get_run_details/get_run_actions/diagnose_run, which are driven by user-supplied flow/run identifiers and error content from that execution trace (outsider-authored free text risk).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata