prd-update-decisions
Warn
Audited by Snyk on Aug 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s runtime workflow reads a PRD file from the user-specified path
prds/[issue-id]-[feature-name].mdand then analyzes the conversation context to propose updates, so outsider-authored free text can be ingested via the chosen PRD/conversation inputs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata