twilio-conversation-memory

Warn

Audited by Snyk on Jul 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). SKILL.md describes an “Automatic” path where observations/summaries are extracted from the conversation transcript and saved, and later “Recall” retrieves that stored text for the agent to use; since the transcript content is authored by external callers/participants, this can become outsider-authored free text that the agent ingests via Recall at runtime.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 6, 2026, 07:49 PM
Issues
1
Security Audit — snyk — twilio-conversation-memory