setup
Warn
Audited by Snyk on Jul 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). Outsider-authored free text from the operating user’s interview responses (e.g., architect-provided customer details) is written into
engagements/<slug>/CONTEXT.mdand then used by downstream skills, so the LLM context can include that free-form outsider text.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata