tigris-python-sdk
Warn
Audited by Snyk on May 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's workflows explicitly read objects from user-facing Tigris/S3 buckets (e.g., bundle_objects, get_object_from_snapshot and get_object/head_object examples in SKILL.md and the presigned_upload flow in resources/django.md), which ingest arbitrary user-uploaded/untrusted content that could contain instructions influencing downstream processing.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata