workitem
Warn
Audited by Snyk on Jul 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.95). Yes—Step 1/2 fetches outsider-authored work item text (GitHub issue bodies/comments via
gh issue view ... --commentsand ADO work item details viaaz boards work-item show ...), and Step 2 further reads outsider PR bodies viagh pr view ... --json title,body,..., which the agent will ingest into the LLM context for triage/research.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata