doc-chg-autopilot

Warn

Audited by Snyk on Aug 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). The skill’s runtime workflow invokes python3 .../tools/saga_driver.py (Step 1) and then only reads trusted saga outputs from .aidoc/review/09_CHG/${ARTIFACT_ID}/saga.json, with no direct ingestion of outsider-authored free text outside whatever the driver/subtools handle for the specified ARTIFACT_PATH.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 1, 2026, 08:55 PM
Issues
1
Security Audit — snyk — doc-chg-autopilot