container-security
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s Step 1 “Discovery” uses Glob to locate and then Step 2–6 evaluates Dockerfiles/Kubernetes manifests/Helm charts/values/yaml files from the target file/directory provided to the workflow, meaning outsider-authored repository/file content can be ingested as free text at runtime (with the worker reading all relevant YAML/Dockerfile strings and comments as data).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata