reproduce-frontend-bug
Warn
Audited by Snyk on Jul 31, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL.md instructs the agent to “Accept GitHub Issues, Jira, Aone, or a user-provided export through any available connector…Record [evidence]” and to treat issue text and attachments as untrusted evidence, meaning outsider-authored issue/ticket free text can be ingested at runtime via the issue connector/attachment export.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata