project-scan
Warn
Audited by Snyk on May 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The skill explicitly supports cloning a Git repo ("Step 1: ... Clone from Git repo" / Option-2) and then reads/parses files (including
.test.mdand config files) from the fetched project into its analysis, which means untrusted, user-generated third‑party repository content is ingested and used to drive decisions about frameworks, tests, and next actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata