pilot-email-bridge
Warn
Audited by Snyk on Jun 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The skill’s runtime workflow includes receiving email content via external SMTP/IMAP tooling (e.g., “Check Inbox” / “Receive Messages” and webhook-based relay), which can ingest outsider-authored email body text into the agent’s LLM context through the Pilot message payloads.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata