openstatus-cli
Warn
Audited by Snyk on Apr 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's monitor configuration and workflows (references/monitor-config.md
request.urlplus SKILL.md sections like "On-demand testing",monitors trigger, andmonitors info) explicitly cause the system to fetch and evaluate arbitrary external URLs and response bodies (e.g.,textBodyassertions), meaning untrusted third-party content can be read and influence CLI/agent decisions such as test outcomes, incident creation, or notifications.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata