paw-pa-agent-orchestrator

Warn

Audited by Snyk on Jul 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.65). Yes: the orchestrator loads and relays text from its shared-memory files such as references/modes-and-clarification.md-driven artifacts like {run-folder}/brief.md and especially {run-folder}/research-dossier.html/{run-folder}/pricing.json, which are written by specialists from multimodal inputs and can also include publicly fetched web text (outsider-origin research) that the orchestrator then reads and presents during guided check-ins.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 25, 2026, 03:55 AM
Issues
1
Security Audit — snyk — paw-pa-agent-orchestrator