deferred-capture
Warn
Audited by Snyk on May 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The "Duplicate Detection" section instructs the agent to run
gh issue list --search ... --state open --json number,titleto fetch open GitHub issues (user-generated, third-party content) and requires reading/comparing those issue titles to decide whether to re-file or mark a duplicate, so external content can influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata