remote-project-control
Warn
Audited by Snyk on May 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's required workflow (SKILL.md and references/operations.md) explicitly runs networked commands like
gh,git fetch/push/pull,ssh, andcurlto inspect GitHub/GitLab repos, remote servers, and logs—i.e., it fetches and interprets untrusted third-party/user-generated content (public repos, server outputs, web/API responses) that can materially influence subsequent commands and decisions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata