code-review
Warn
Audited by Snyk on Jul 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). SKILL.md:24-27 ระบุให้ดึง “ข้อมูล issue tracker” และ “path/ไฟล์ PRD/spec” จากแหล่งที่อาจมีข้อความที่ผู้ใช้ไม่ได้เป็นผู้เขียน (เช่น issue/PRD จากภายนอก) แล้วนำ “path หรือเนื้อหาของ spec ที่ดึงมา” (SKILL.md:65-67) เข้าไปใน prompt ของ Spec sub-agent ผ่าน tool call (SKILL.md:55-67), ซึ่งเป็น free text ที่อาจเป็นของคนนอก
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata