word-document
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Source: the user-provided “content” input that the skill uses to generate and run a python-docx/script (scripts/docx_tool.py reads text from --text-file/--stdin and inserts it into word/document.xml).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata