infrastructure
Warn
Audited by Snyk on Jul 6, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required workflow for
release-changelogingests outsider-authored free text from public/remote sources at runtime—specifically merged PR bodies viagh pr list ... --json number,title,body,labels(PR body text is authored by non-operating-user contributors), which the agent then uses to generate the changelog and thus feeds into the LLM context.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata