wechat-article

Warn

Audited by Snyk on Jul 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). 该技能运行时会启动研究/写作/审阅等多Agent流程,并在“深度研究”阶段使用搜索与可能下载/提取论文PDF或其他资料;这些来自外部网页/论文/资料的可读文本会被读入并进入LLM上下文(典型为公开网页抓取内容、PDF正文/图注提取等),属于OUTSIDER来源的自由文本/文档内容。

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 4, 2026, 01:03 PM
Issues
1
Security Audit — snyk — wechat-article