pk-shared

Warn

Audited by Snyk on Jul 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). Workflow runtime của các skill pk-* đọc trực tiếp văn bản từ các file trong workspace .cockpit/ (đặc biệt inbox/*.md, schema-signals.md, knowledge/*.md, log/**) làm input context qua “Context Snapshot” (ví dụ inbox/*.md scan body/frontmatter và log/** đọc deep), trong đó nội dung inbox/log có thể xuất phát từ outsider user/nguồn đẩy vào.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 29, 2026, 07:34 AM
Issues
1
Security Audit — snyk — pk-shared