nav-upgrade

Warn

Audited by Snyk on May 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). This skill fetches and parses public, user-generated content from GitHub (see version_detector.py calling https://api.github.com/repos/alekspetrov/navigator/releases/latest and SKILL.md/git clone steps that pull templates and release notes from GitHub), and that external release/template content is explicitly read and used to decide updates and actions (e.g., recommending/staging installs and auto-updating CLAUDE.md), which could allow indirect prompt injection via malicious or crafted release notes or templates.

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

Issues (2)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

W012
MEDIUM

Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 16, 2026, 04:43 AM
Issues
2
Security Audit — snyk — nav-upgrade