clone-image-ad
Warn
Audited by Snyk on Aug 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The runtime workflow reads outsider-authored free text from user/attacker-provided fields used as the
--promptinput toskills/clone-image-ad/scripts/validate_image.py(and optionally--pin-block/--aspect-ratio), which then appends safety suffixes and sends that prompt verbatim to the image model viaPOST {base_url}/v1/images.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata