address-pr-comments
Warn
Audited by Snyk on Aug 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In “Address PR Comments”, the runtime workflow uses
gh api --paginateto read PR review comments, issue comments, and review submission bodies (user-authored text) from GitHub before triaging them for fixes/replies, so outsider-authored free text is ingested fromrepos/{owner}/{repo}/pulls/{n}/comments,issues/{n}/comments, andpulls/{n}/reviews.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata