nature-paper-card
Warn
Audited by Snyk on Jul 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required runtime workflow runs the bundled
scripts/prepare_paper.pyon the user-supplied PDF ornature-readersource-map JSON, and that script extracts page text/blocks (free text authored by outsiders—the paper’s authors) intosource_bundle.json, which is then used by the LLM to draft the card (indirect prompt-injection risk via paper text).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata