release-notes

Warn

Audited by Snyk on Jul 3, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.85). Outsider-authored free text can enter the LLM context via scripts/list_contributors.py, which ingests commit subject/body (authored by other contributors) and CHANGELOG text at <head> (git show <head-ref>:CHANGELOG.md), then the skill renders those into release-note prose (e.g., contributor pr_summary subjects and #NNNN-anchored acknowledgments).

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 3, 2026, 11:06 AM
Issues
1
Security Audit — snyk — release-notes