resend-inbound
Warn
Audited by Snyk on Jul 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). SKILL.md describes a runtime webhook handler that verifies and then retrieves email body/attachments via Resend APIs (email content and attachment filenames/body are outsider-authored by senders), which would be ingested into the agent/LLM context if the workflow passes
email.html/email.textor downloaded attachment text to the LLM.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata