web-clone

Warn

Audited by Snyk on Jul 18, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). High: the required runtime workflow uses Playwright to open OUTSIDER-provided URLs and extracts outsider-authored page DOM text/HTML (e.g., document.body.innerText, document.documentElement.outerHTML, headings/links) into JSON/markdown artifacts that are then used downstream for analysis/LLM context; this is classic public-web free-text ingestion via recon-site.mjs/interaction-probe.mjs/route-crawl.mjs.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 18, 2026, 08:43 AM
Issues
1
Security Audit — snyk — web-clone