changelog-rfc-29

Warn

Audited by Snyk on Mar 21, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). This skill autonomously fetches and parses public GitHub release content (see scripts/import-releases.ts: fetchReleases using gh api "repos/${repo}/releases?...") and then converts release bodies into changelog entries (convertToChangelog/parseReleaseBody), so untrusted, user-generated third‑party content from arbitrary repos is ingested and can change tool behavior and outputs.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 21, 2026, 11:33 AM
Issues
1
Security Audit — snyk — changelog-rfc-29