dx-roaster
Warn
Audited by Snyk on Jun 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). Outsider free text can enter the LLM context when
repois a GitHub URL: the skill clones the repo and reads outsider-authored files likeREADME.mdand other repo text (e.g., issues/templates/docs) into the agent for scoring and roast generation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata