task-list
Warn
Audited by Snyk on Aug 22, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The required runtime workflow ingests only the outsider’s request text when the agent calls the
taskstool (e.g.,tasks(operation="add_multiple", content="...")) to store user-provided step strings as task content, which thetasks.pyscript then parses and persists from CLI args and includes when listing/completing tasks.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata