planning-task-execution

Warn

Audited by Snyk on Aug 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). Coordinator Phase 5 (and its execution-prepper) reads the task plan content from docs/<KEY>-tasks.md (and optional docs/<KEY>.md / docs/<KEY>-task-<TASK_NUMBER>-decisions.md), which is upstream work-item/tracker-authored text that can be influenced by the provider’s users, thus exposing indirect prompt-injection via that file ingestion path at runtime.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 6, 2026, 05:38 AM
Issues
1
Security Audit — snyk — planning-task-execution