jinko-task-trial-data-scoping

Warn

Audited by Snyk on Aug 26, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). ClinicalTrials.gov registry text is fetched and ingested at runtime via scripts/clinical_trials.py calling the https://clinicaltrials.gov/api/v2/studies?... endpoint and then normalizing fields from the returned JSON (title, conditions, eligibility criteria, summaries, etc.).

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 26, 2026, 11:52 AM
Issues
1
Security Audit — snyk — jinko-task-trial-data-scoping