greploop
Warn
Audited by Snyk on Aug 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the Greploop required workflow, the agent fetches and ingests free-text PR/MR content authored by others at runtime—specifically Greptile bot review output from GitHub PR bodies, review comments, and unresolved inline review thread comment bodies; and on GitLab from MR descriptions and Greptile-authored MR notes/discussions—then parses that text for scores and unresolved comments.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata