transcript-pipeline

Warn

Audited by Snyk on Feb 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The pipeline explicitly includes an Optional Resource Enrichment stage and a Colab notebook pipeline (scripts/resource_enrichment.py and scripts/run_colab_notebook_pipeline.py, referenced in SKILL.md and USAGEGUIDE.md) that download and ingest Notion/Canva/Drive resources and public Colab notebooks—untrusted, user-generated third-party content—which the agent is expected to read and incorporate into generated notes and validation, so that content could materially influence subsequent actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 22, 2026, 01:59 PM