lifecycleinventory-review
Warn
Audited by Snyk on May 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The wrapper script (scripts/run-remote-process-review.mjs) explicitly runs "tiangong process list --json" (or consumes a provided report file) and writes inputs/process-list-report.json and processes.snapshot.rows.jsonl which the skill parses and uses as the canonical review input, so it ingests untrusted remote/user-generated process snapshots that directly influence review behavior and outputs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata