star-your-harness
Warn
Audited by Snyk on Aug 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). 运行时会在
scripts/plan.py/scripts/migrate.py里遍历用户在profile.json中提供的来源目录文件名与部分元数据(体量/后缀),从而把用户/外部材料的文本(文件名/路径/内容未必,但至少可读元信息与用于 HTML 的字符串)直接喂给 LLM 生成的方案展示与后续决策流程。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata