super-autopilote-ticket
Warn
Audited by Snyk on Jul 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required workflow reads each pending ticket’s Markdown file from the provided local folder (outsider-authored free text if the tickets were not authored by the operating user) and injects it into the LLM via the “Implement ONLY this ticket end-to-end:
<ticket-path>” subagent prompt.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata