piv-implement
Warn
Audited by Snyk on Aug 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Source/plan text is read from a user-supplied local path argument (
$ARGUMENTS) as a “plan file,” and the workflow explicitly instructs the agent to read and carefully follow the entire plan at runtime.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata