tooluniverse-small-molecule-discovery
Warn
Audited by Snyk on May 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). High: the workflow performs runtime lookups against public chemical databases (e.g., PubChem/ChEMBL/eMolecules/Enamine) and ingests their returned records/HTML-derived text into the agent context, which can include outsider-authored free text (compound names, descriptions, assay metadata, vendor/catalog snippets) that the agent then uses in LLM reasoning.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata