gitlab-create-mr
Warn
Audited by Snyk on Apr 7, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md workflow explicitly tells the agent to call host-aware commands like
glab repo viewandglab mr view/glab mr listagainst GitLab.com or self‑managed GitLab instances, which fetch and require the agent to read user-generated repository and merge-request content from external (potentially untrusted) GitLab hosts.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata