linear-comments
Warn
Audited by Snyk on Aug 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). The required workflow runs
linear-cli cm list/cm createusing an outsider-providedISSUE_ID/comment body/IDs, but the runtime text ingestion is not described in SKILL.md (no indication it reads arbitrary outsider-authored comments from Linear without selecting specific items).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata