kelly-legal-matter-strategy
Warn
Audited by Snyk on Aug 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the runtime UI flow, the app reads live Busabase records for the
items/entities/checks/settingsbases inbusabase-provider.js(readAllRecords(...)→getState()→buildSnapshot()), and those fields include agent-reviewed free-text liketitle,summary,body,recommendation,draft,decision_note, andissue_tree, so any outsider who can inject that content into the app’s Busabase Space (e.g., via records list/change-request path) can have it ingested without first selecting a specific item.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata