media-gpt-image-2-prompt

Warn

Audited by Snyk on Aug 19, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). SKILL.md의 워크플로우는 런타임에 “사용자 자연어 한 줄”을 직접 수집해 Round 1~3 슬롯으로 매핑한 뒤 6-Block/5-component/MJ 프롬프트로 생성하므로, 외부자가 제출한 자유텍스트(프리셋 선택 및 슬롯/텍스트 입력)를 LLM이 그대로 읽습니다.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 19, 2026, 01:42 PM
Issues
1
Security Audit — snyk — media-gpt-image-2-prompt