asc-pricing-manager
Warn
Audited by Snyk on Jun 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required runtime workflow (
scripts/asc-audit-pricing.mjs→createAscClient→fetchAllDocuments/fetchPriceRows/fetchAvailablePricePoints) ingests App Store Connect API JSON responses (e.g.,manualPrices,automaticPrices,appPricePoints,territories) into the agent’s LLM context via the generated JSON/CSV artifacts, and those responses are outsider-authored data from a third-party service rather than user-authored content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata