agents-skills-feedback-loop
Warn
Audited by Snyk on Aug 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Layer-1 runtime auto-capture hook (
assets/learnings_capture.py) ingests a full session transcript (transcript_text(transcript_path)) and passes the resulting free-text (SESSION TRANSCRIPT (trimmed): {convo}) into a spawned model viareflect()for reflection, where the transcript content is sourced from the user/outsider-authored run.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata