ready
Warn
Audited by Snyk on Sep 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The workflow reads issue titles and metadata from the Forge issue backend via CLI, which represents project management ticketing where issue titles can be authored by outsiders.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata