ln-402-task-reviewer
Warn
Audited by Snyk on May 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's mandatory workflow requires loading the full task and parent Story via the configured tracker provider (see "Resolve taskId" / "Load
getTask,getStory" and storage_mode_detection mapping), which includes reading user-generated issues/comments from third-party trackers like GitHub or Linear and using that content to drive review decisions and status updates.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata