ship-workflow-land
Warn
Audited by Snyk on Aug 26, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). 该工作流在运行时通过 GitHub CLI 读取“PR body/状态/检查结果”(
gh pr view --json ...、以及后续的 CI/失败日志查看),这些字段包含外部作者提交的自由文本(PR 作者撰写的 PR body)因此存在间接提示注入暴露面。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata