codex-doctor
Warn
Audited by Snyk on Jul 28, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). Runtime path
python3 <skill-dir>/scripts/scan_workspace.py --cwd "$PWD" --compact-jsoningests and emitsAGENTS*.md,SKILL.md, andhooks.json/config.tomlbody text from the current repository into the scanner’s JSON output, and that output is then used by the agent—these are outsider-authored repository documents if the repo contains contributions from parties other than the operating user.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata