fetching-github-issue
Warn
Audited by Snyk on Apr 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). This skill explicitly retrieves and ingests user-generated GitHub issue and comment content via
gh/gh api(see subagents/issue-retriever.md and the retrieval steps that fetch issue bodies, comments, timeline/linked issues) and uses that content to build snapshots and extract acceptance criteria that downstream phases will act on, exposing the agent to untrusted third-party content that could contain indirect prompt-injection.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata