telemetry-inspect
Warn
Audited by Snyk on Aug 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). SKILL path
/ork:telemetry-inspectreads local telemetry files and scans.claude/{telemetry,logs,state,feedback}on disk (via inventory-drivenRead/findand coordination files like~/.local/state/orchestkit/sessions.db), and those files’ contents are potentially influenced by outsiders who can submit data that gets written into the telemetry logs.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata