openstatus-cli

Warn

Audited by Snyk on Apr 9, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill's monitor configuration and workflows (references/monitor-config.md request.url plus SKILL.md sections like "On-demand testing", monitors trigger, and monitors info) explicitly cause the system to fetch and evaluate arbitrary external URLs and response bodies (e.g., textBody assertions), meaning untrusted third-party content can be read and influence CLI/agent decisions such as test outcomes, incident creation, or notifications.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 9, 2026, 02:11 AM
Issues
1