ship-it
Warn
Audited by Snyk on May 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's Phase 4 workflow explicitly requires fetching and interpreting reviewer comments and unresolved review threads from GitHub (see "Fetch latest comments + unresolved review threads using ../review-pr-comments/references/github-comment-fetching.md"), which are untrusted user-generated third-party content that the agent must act on and which can materially influence decisions and actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata