fix-renovate-pr
Warn
Audited by Snyk on Jun 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). At runtime, the skill uses GitHub MCP tools to read the target Renovate PR’s body/comments and failing check/job logs (outsider-authored PR content), which are ingested as readable text into the agent context via the MCP “get PR/status/check” steps.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata