ccw-help
Warn
Audited by Snyk on May 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's command index (command.json) and help workflow explicitly include commands that ingest public, user-generated content—e.g., the "new" command entry ("Create structured issue from GitHub URL or text description") and "issue:discover" which supports external research—so the agent can fetch and interpret GitHub/public web content and let that content influence subsequent orchestration/execution.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata