draw-your-font
Warn
Audited by Snyk on Aug 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s runtime path ingests user-provided handwriting photos and analyzes them with
vision_analyze(e.g., “Loadwork/contact-1.pngwithvision_analyze” and photos “arrive in Hermes… as a file path… via the gateway image cache”), so outsider-authored free text can be provided indirectly through user input when no specific safe item is selected first.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata