full-code-review
Warn
Audited by Snyk on Jul 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Yes—runtime
DIFFandCHANGED_FILESare sourced from the target PR/branch (diff + PR metadata viagit diff/gh pr view/gh pr diffin SKILL.md), and are embedded as plain-text into reviewer and synthesis agent prompts inscripts/full-code-review.js(the LLM reads untrusted code/PR text).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata