verify-tests-fail-without-fix

Warn

Audited by Snyk on Mar 3, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill auto-detects test classes and fix files by reading changed files from the PR (git diff + Get-Content of TestCases.Shared.Tests/*.cs) and calls gh CLI to read/update PR metadata, so it consumes untrusted, user-generated GitHub PR content which directly influences which tests are run and label updates.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 3, 2026, 10:09 PM