docs-fix-changelog
Warn
Audited by Snyk on Sep 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The runtime workflow fetches GitHub PRs and issues via URLs specified in changelog files or user prompts, and optionally fetches canonical guidance from an external URL (
https://www.elastic.co/docs/contribute-docs/content-types/changelogs), ingesting external untrusted text or fetched web content.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata