application-security-review
Warn
Audited by Snyk on Aug 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL.md’s workflow repeatedly directs the agent to “read” and “after push… scan… PR text… commit metadata… and all reachable blobs,” meaning the agent will ingest outsider-authored repository/PR free text at runtime during public/mirror scans.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata