brand-logos
Warn
Audited by Snyk on Jun 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required runtime workflow fetches SVG markup from SVGL’s public REST API endpoints (e.g.,
GET https://api.svgl.app/svg/<name>.svg), and that fetched free-form SVG text is then ingested into the agent’s context for embedding/saving—this is outsider-authored content from a third-party public web service.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata