intlayer-usage
Warn
Audited by Snyk on May 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The documentation (references/concept_how-works-intlayer.md, "Distant content" and "Visual editor" sections) explicitly states Intlayer can fetch/merge dictionaries from an external CMS and process remote Markdown/HTML via the editor (fetched at app start/build and used by useIntlayer), meaning untrusted, user-editable third‑party content is ingested and interpreted as part of runtime workflows.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata