story-done

Warn

Audited by Snyk on Aug 24, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). [story-done] reads the story file path and then ingests multiple .md/.yaml files derived from that selection (e.g., the provided story file, docs/architecture/tr-registry.yaml requirement text, referenced GDD/ADR sections, and evidence/sign-off files), so outsider-authored free text can be supplied via the story-file-path/selected task’s referenced story content that the workflow directly reads and reasons over.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 24, 2026, 04:19 PM
Issues
1
Security Audit — snyk — story-done