blog-writer

Warn

Audited by Snyk on Aug 31, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). The workflow allows the agent to fetch and read arbitrary GitHub issues or PRs via the gh CLI when provided by the user or referenced in requests, constituting low-risk ingestion of outsider-authored content.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 31, 2026, 06:46 PM
Issues
1
Security Audit — snyk — blog-writer