review-plan

Warn

Audited by Snyk on May 12, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). SKILL.md (step 3 and the Rules for external-specification investigation) explicitly requires spawning subagents to fetch and summarize public external documentation, major repositories and URLs (参照元の種別、URL…公式ドキュメント・主要リポジトリ・コミュニティ記事), which the agent must read and use to influence review decisions, thereby exposing it to untrusted third‑party content.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 12, 2026, 06:55 PM
Issues
1