cursor-memory-curator

Warn

Audited by Snyk on Aug 20, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). The runtime workflow reads outsider-controlled free text from the user’s repository and user-provided memory-bank paths by inspecting files like .cursor/rules/*.mdc, legacy .cursorrules, AGENTS.md, and any --memory-bank artifacts via node scripts/inventory-cursor-context.mjs --repo . [--memory-bank PATH] and node scripts/scan-cursor-context-risks.mjs --repo . --json [--memory-bank PATH] before producing the review/plan/cleanup.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 20, 2026, 07:07 AM
Issues
1
Security Audit — snyk — cursor-memory-curator