financial-data-collector
Warn
Audited by Snyk on Aug 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). At runtime, the required workflow in
scripts/collect_data.pyingests free-form remote JSON content (market data, quoteSummary fields, and treasury chart values) from Yahoo endpoints viascripts/yahoo_web_api.py.fetch_quote_summary()/fetch_treasury_chart()and parses their fields into the final output.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata