inbound-lead-qualification
Warn
Audited by Snyk on Jun 23, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.95). Yes—Step 2 runs
scripts/web_research.pywith--fetch-pages, which fetches outsider-authored public web pages (DuckDuckGo HTML search results and extracted page text) and writes them toresearch.json, which the agent then reads to score and generatereasoningin the LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata