helio-mcp

Warn

Audited by Snyk on Aug 3, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). In the Helio MCP required runtime workflow, the only LLM-readable outsider text is user/agent-provided inputs to tools/prompts (e.g., chat instructions passed to create_assessment, and the query text used to drive get_test_report/get_filtered_responses), not free text read from an outsider-authored external feed/queue without the agent first selecting specific Helio items.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 3, 2026, 02:52 PM
Issues
1
Security Audit — snyk — helio-mcp