shots

Warn

Audited by Snyk on Aug 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). In scripts/extract-frames.py, the runtime ingests user-authored JSON at --shots-path/--manifest-path and then extracts frames based on shots[] fields (e.g., start_seconds, end_seconds, index) without selecting a specific trusted item first, so an outsider can submit a poison manifest for the LLM-adjacent workflow to read.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 15, 2026, 03:49 PM
Issues
1
Security Audit — snyk — shots