multi-banned-words
Warn
Audited by Snyk on Aug 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Skill 运行时通过脚本
scripts/check_multi.py将用户提供的content作为请求体字段发送到https://doubaoya.com/api/apis/tool/check-banned-words/call并读取响应data/error,属于对外部免费文本的运行时摄取(虽非网页抓取,但仍由外部作者提交到可检测的输入)。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata