trending-hub-top10
Warn
Audited by Snyk on Jun 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). 运行时通过
scripts/fetch_hotspot.py调用外部 Redfox API 获取各平台热搜标题(hotspots[].title、hotspots[].url),这些标题/链接来自非操作用户选择引入的第三方平台内容,随后被写入structured_report.json并在scripts/generate_html_report.py生成HTML/并由智能体分析进入LLM上下文。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata