stockvault-downloader
Warn
Audited by Snyk on Apr 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The extension explicitly reads and parses live StockVault image pages (see "How It Will Work" steps and "Why StockVault" / "About StockVault" sections) to detect assets, resolutions, filenames, and metadata from user-contributed pages on the public StockVault site, so untrusted third-party content is ingested and can drive download actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata