@tank/cooking-mastery
Warn
Audited by Snyk on May 31, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required workflow for “Extract recipe from this video” (and web fallback in recipe search) fetches and parses outsider-authored web page content/JSON-LD from arbitrary recipe/video URLs at runtime, which is then ingested into the agent’s LLM context as recipe text (description/transcript/instructions/ingredients).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata