adr-author

Warn

Audited by Snyk on Jun 26, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). In adopt-template mode, the skill ingests a user-supplied ADR template file/directory (outsider-authored free text) and reads it as UTF-8 prose via scripts/normalize_template.py (in_path.read_text(...)), which is then used to generate the Frame/Decide content that the agent will place into the LLM context.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 26, 2026, 03:39 PM
Issues
1
Security Audit — snyk — adr-author