kimi-websearch
Warn
Audited by Snyk on Jul 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Required workflow calls
scripts/kimi_search.py, which fetches runtime search results fromhttps://redfox.hk/story/api/kimi/resultand then printsresult_data(including Kimi answer text and citations) as JSON to stdout; that returned free text is then consumed by the agent, creating an indirect prompt-injection path from outsider-provided web search content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata