openspec-archive-change
Warn
Audited by Snyk on Jul 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.65). This workflow reads and parses JSON plus files (e.g., delta spec
spec.mdcontents andtasks.md) from the target OpenSpec change/specs on disk, which are outsider-authored when the underlying repo/workspace includes contributions from other people (public or non-user-authored repo content); those file bodies are then processed into the LLM context via the “delta spec analysis” and combined summary before prompting/syncing.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata