browser-tools
Warn
Audited by Snyk on Jul 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Yes—when the required workflow navigates to a runtime-supplied URL and then runs
scripts/scrape-page.mjs/scripts/extract-article.mjs, it reads outsider-authored page text/links from the loaded web content and prints it to stdout (LLM-ingestible prose) viaconsole.log.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata