multi-banned-words

Warn

Audited by Snyk on Aug 18, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). Skill 运行时通过脚本 scripts/check_multi.py 将用户提供的 content 作为请求体字段发送到 https://doubaoya.com/api/apis/tool/check-banned-words/call 并读取响应 data/error,属于对外部免费文本的运行时摄取(虽非网页抓取,但仍由外部作者提交到可检测的输入)。

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 18, 2026, 11:41 AM
Issues
1
Security Audit — snyk — multi-banned-words