deferred-capture

Warn

Audited by Snyk on May 9, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). The "Duplicate Detection" section instructs the agent to run gh issue list --search ... --state open --json number,title to fetch open GitHub issues (user-generated, third-party content) and requires reading/comparing those issue titles to decide whether to re-file or mark a duplicate, so external content can influence actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 9, 2026, 07:37 AM
Issues
1