gitnexus-taint-analysis
Warn
Audited by Snyk on Jun 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.65). The required workflow for
--pdgtaint/CFG analysis ingests outsider-authored free text via runtime parsing of repository files (e.g., issue/PR/wiki/discussion content or other downloaded/forwarded documents) into the CFG/taint pipeline, which then emits L3/L4 findings into the agent’s LLM context through theexplaintool’s natural-language output.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata