receiving-shared-textures
Warn
Audited by Snyk on Aug 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s required runtime workflow consumes frames via
installSharedTextureReceiver()+consumeSharedTexture({ onFrame: ... }), where the externally supplied producer arguments (extraArgs, e.g.,slot) are used to process per-frame data and therefore creates a pathway for outsider-authored free text only if the producer can inject such text into whatonFramereceives.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata