build-zoom-rest-api-app
Warn
Audited by Snyk on Apr 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's runtime workflows (notably examples/recording-pipeline.md and examples/webhook-server.md) explicitly instruct downloading and processing recording files and webhook payloads (user-generated content) from Zoom download URLs, which are third‑party/untrusted inputs that the agent is expected to read and that can materially change subsequent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata