doc-writer
Warn
Audited by Snyk on Jul 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Phase 1 requires reading a user-provided GitHub issue/PR description and may inspect source code in public
microsoft/vscode/microsoft/vscode-copilot-chatrepos viagh, which can bring outsider-authored free text (issue/PR body, comments, and repo content) into the LLM context for research.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata