audience-icp-filter
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In
scripts/build.pythe skill’s pass 1 runtime ingests user-provided JSON lead fields (e.g.,jobTitle,companyName,proEmail,shortBio) fromspec.jsonor stdin and classifies them, so outsider-authored free text can flow into the LLM/semantic pass as part of the “leads” records.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata