remotion-video
Warn
Audited by Snyk on Mar 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md workflow explicitly requires calling third‑party services and ingesting external media (e.g., MiniMax TTS via scripts/generate_audio_minimax.py, external URLs, and public model sites like Mixamo/Sketchfab), and those fetched files are used to auto‑update audioConfig.ts and drive scene timing, so untrusted third‑party content can materially influence runtime behavior.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata