serverless

Warn

Audited by Snyk on Aug 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). The skill’s runtime workflow includes an AWS Lambda handler that ingests the API Gateway event body (outsider-authored JSON fields like user_id, name, email) and uses it for logging/tracing and DynamoDB reads/writes.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 25, 2026, 05:05 PM
Issues
1
Security Audit — snyk — serverless