sentry

Warn

Audited by Snyk on Jun 18, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). The skill’s runtime path calls the Sentry REST API via scripts/sentry_api.py (urlopen to /api/0/...), and the JSON response body (auth’d Sentry issue/event text) is parsed and printed into the agent context—this is outsider-authored content from Sentry’s system, not the operating user.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 18, 2026, 02:45 AM
Issues
1
Security Audit — snyk — sentry