telnyx-voice-gather-java

Warn

Audited by Snyk on Aug 12, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). Telnyx Voice Gather’s runtime workflow would ingest outsider-provided free text via Telnyx webhooks like CallAIGatherEnded/CallAIGatherPartialResults, which include data.payload.message_history (and partial results) generated from the caller’s speech/inputs, and those webhook bodies are then processed by the application using client.webhooks.unwrap().

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 12, 2026, 06:27 PM
Issues
1
Security Audit — snyk — telnyx-voice-gather-java