bilibili-portfolio-search
Warn
Audited by Snyk on Jul 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Runtime path:
scripts/fetch_user_works.pycallshttps://doubaoya.com/.../bilibili-user-works/call, then parses the JSON response and printsenvelope["data"](including outsider-authored B站作品标题/链接) to stdout, which the agent will ingest as LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata