product-qa
Warn
Audited by Snyk on Jun 29, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Step 3 fetches outsider-authored free text from the parent Linear issue and the PR body via
linear issue view <KEY> --jsonandgh pr view <N> --json ... --json, which the skill then reads and incorporates into the LLM-generated announcement.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata