local-file-organizer

Warn

Audited by Snyk on Aug 12, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). 本技能的 REQUIRED 运行工作流在步骤2/4中读取并分析“目标本地文件/目录”的内容(含文本提取/OCR/元数据)来建立证据清单与变更账本,外部人士若能把“文件内容”投放到用户指定的本地目录就可能成为可注入的自由文本来源。

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 12, 2026, 05:27 PM
Issues
1
Security Audit — snyk — local-file-organizer