monitor-pipeline
Warn
Audited by Snyk on Jun 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The skill polls GitLab pipeline/job status and, on failure, fetches and ingests the failed job’s logs (outsider-authored CI job output from other users/commits) into the agent context via the GitLab API “job logs” path.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata