doc-chg-fixer

Warn

Audited by Snyk on Aug 1, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). In SKILL.md, the runtime workflow ingests attacker-influenced free text only if it is already present in the audit report and per-persona slots it reads locally (i.e., .aidoc/audit/09_CHG-audit.md and .aidoc/review/09_CHG/<CHG-id>/...json), which are outsider-authored indirectly via the upstream audit cycle/inputs.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 1, 2026, 08:55 PM
Issues
1
Security Audit — snyk — doc-chg-fixer