telnyx-ai-assistants-python
Warn
Audited by Snyk on Mar 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill documents runtime fields like dynamic_variables_webhook_url and fetch_dynamic_variables_from_webhook (in Create/Update/Retrieve assistant and optional-parameters sections) which cause the service to fetch/ingest data from arbitrary webhook/URL endpoints and feed those dynamic variables into assistant behavior, so untrusted third-party content could indirectly inject instructions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata