gh-fix-issue
Warn
Audited by Snyk on Jul 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.95). The required workflow runs
scripts/inspect_issue.py, which usesgh api/gh issue viewto fetch outsider-authored GitHub Issue body/comments (free-form text) and then prints/returns that text (e.g., extracted error messages/stack traces/code blocks) into the agent’s context for subsequent LLM reasoning.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata