happy-horse
Warn
Audited by Snyk on Aug 12, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). In
scripts/videogen.py, outsider-provided free text passed via the--promptargument is directly ingested into the runtime request body (messages→chat/textorprompt→generation/video) without any selection from a monitored external feed (no queue/feed ingestion path).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata