doc-chg-fixer
Warn
Audited by Snyk on Aug 1, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In SKILL.md, the runtime workflow ingests attacker-influenced free text only if it is already present in the audit report and per-persona slots it reads locally (i.e.,
.aidoc/audit/09_CHG-audit.mdand.aidoc/review/09_CHG/<CHG-id>/...json), which are outsider-authored indirectly via the upstream audit cycle/inputs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata