resolve-bot-reviews
Warn
Audited by Snyk on Apr 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly fetches GitHub pull request review threads via GraphQL and reads bot comment bodies (CodeRabbit / Gemini Code Assist) from those PRs to parse severity and drive fixes, commits, and thread resolution, which is untrusted third‑party content that can materially influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata