recon-a-domain-passively
Warn
Audited by Snyk on Aug 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The workflow “Recon a domain passively” ingests outsider-authored free text via its steps that read third-party and community content about the target’s estate (e.g.,
read-deleted-pages,google-like-a-spy, andsecrets-in-git-historyin Step 6), where those pages/repo contents can include attacker-supplied prompt-injection text.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata