x9-codex-delegation

Warn

Audited by Snyk on Aug 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). The runtime path only delegates the user-constructed delegation brief to Codex via the local Codex CLI (codex exec ... --skip-git-repo-check or `codex exec -s ...
  • < "$DELEGATION_PROMPT_FILE"`), and does not describe any mechanism for automatically ingesting outsider-authored free text from an external queue/feed or monitored third-party content.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 25, 2026, 07:40 AM
Issues
1
Security Audit — snyk — x9-codex-delegation