server-log-crawler-analyst
Warn
Audited by Snyk on Jul 29, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the “Identify available evidence” step, the workflow ingests provided access-log snippets or exported summaries (including outsider-controlled text pasted/uploaded by the user) and runs LLM-based summarization/classification over them, which could be indirectly influenced by prompt-injection strings embedded in that log content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata