baz-codebase-exploration
Warn
Audited by Snyk on Aug 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s required runtime workflow uses Baz MCP indexed code search tools (
repo_search,remote_grep,remote_file_search) which ingest free-text search keywords supplied by the user, and it can then read matched repository files (including non-first-party repo content) as part of the required flow.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata