apify-competitor-intelligence

Warn

Audited by Snyk on Jun 23, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). Outsider free text can enter the LLM context via Step 5 “Summarize findings” after Step 4 downloads Apify dataset items (scraped reviews/comments/posts from third-party platforms) and then the agent summarizes them; this is runtime ingestion of outsider-authored content from https://api.apify.com/v2/datasets/${datasetId}/items?... (quick answer) or downloadResults() (CSV/JSON).

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 23, 2026, 10:01 AM
Issues
1
Security Audit — snyk — apify-competitor-intelligence