paw-pa-library
Warn
Audited by Snyk on Jul 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Outsider-authored free text from the runtime directory
library/inbox/**is read as UTF-8 (scripts/ingest-library.py:526-527), then included verbatim into generated index/markdown outputs (case-studies-index.json,pricing-history.json,scope-templates.md, andbrand/boilerplate/*.md) which are then passed along to downstream agent skills as context; there is no LLM-only filtering/sanitization in this workflow.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata