openclaw-github-repo-commander
Warn
Audited by Snyk on Aug 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Source path “/openclaw-github-repo-commander & Stage 1/2/3” clones a user-specified GitHub repo URL and runs scripts/repo-audit.sh on the cloned repository contents (e.g., uses rg to scan README.md and searches for secret patterns), which can include outsider-authored free text from that repo.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata