tidas-contract-context
Warn
Audited by Snyk on Jun 27, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The required workflow runs
tiangong-lca dataset context-pack/tiangong-lca dataset contract getto fetch contract artifacts, and those CLI outputs (e.g.,outputs/ai-context.md,outputs/schema.json,outputs/methodology.yaml,outputs/runtime-ruleset.json) are ingested as readable text into the agent’s LLM context; since the skill does not restrict the source of those contract artifacts to user-authored content, this is an outsider-authored content path (vendor/public dataset content fetched at runtime).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata