cli-channel-debugging

Warn

Audited by Snyk on Jun 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.75). The skill’s runtime path emulate-aspire-cli.{sh,ps1} auto-resolves ASPIRE_CLI_VERSION by calling get-aspire-channel-version.{sh,ps1}, which fetches package index JSON from outsider-authored public feeds (e.g., https://api.nuget.org/... or https://pkgs.dev.azure.com/...) and ingests the returned readable text/JSON into the LLM context via the script output used to set env vars.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 29, 2026, 03:40 PM
Issues
1
Security Audit — snyk — cli-channel-debugging