octocode-plan
Warn
Audited by Snyk on Mar 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill's Research Orchestration and Scope & Tooling sections require delegating external research to
octocode-researcher/octocode-research, explicitly citing "External GitHub", repos, packages and PRs as data sources (e.g., "External questions → Calloctocode-researcherskill (external track)"), so the agent will ingest untrusted public repository/web content that can materially influence planning and actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata