n8n-workflow-patterns
Warn
Audited by Snyk on Feb 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). This skill explicitly describes workflows that ingest and process open third‑party content (e.g., "Webhook Processing" and "HTTP API Integration" patterns, examples like "Fetch GitHub issues", "Weather API", and "Webhook (receive chat message)" as well as integrations with Slack/Discord and HTTP Request nodes), meaning the agent is expected to read and interpret untrusted user-generated or public web content.
Audit Metadata