project-watchdog
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In scripts/watchdog/commands.py, the tick path calls list_routable_issues(...) which scans/reads untrusted GitHub issue bodies (outsider-authored text) and then dispatches them into handle_issue via the $ask tau-dag repair route.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata