github-repo-hunter

Warn

Audited by Snyk on Feb 26, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill explicitly searches and fetches public GitHub repositories (Discovery Phase in SKILL.md and references/github_api.md), decodes and ingests README and metadata (references/github_api.md "Get README" and scripts/evaluate_repo.py reads repo['readme']), and uses that untrusted, user-generated content to score and automatically add/integrate repositories—meaning third-party content can materially change agent decisions and actions.

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 26, 2026, 05:31 AM