img-gen-prompts
Warn
Audited by Snyk on Jul 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The required workflow’s runtime path reads the archive search results (including outsider-authored
source_prompt/author/source_url) viascripts/oip.py→run_library(...)→scripts/prompt_library.pyinto JSON that is then rendered/used by the gallery session, so outsider free text can enter the agent/LLM context indirectly through these fields.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata