e2e-failure-analyzer

Warn

Audited by Snyk on Jul 30, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). SKILL.md Step 1 takes a GitHub Actions run URL/ID, then scripts like scripts/e2e-gather-run-info.js and especially scripts/e2e-process-project.js/scripts/e2e-process-s3.js download and parse Playwright trace, error-context markdown, and logs from those runs (outsider-authored run artifacts), turning their embedded free text into the runtime inputs for the analyzer.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 30, 2026, 01:46 PM
Issues
1
Security Audit — snyk — e2e-failure-analyzer