gh-activity-summary
Warn
Audited by Snyk on Feb 17, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The script uses the GitHub CLI (gh search commits/prs/issues) to fetch commits, pull requests, and issues from GitHub — a public, user-generated source — and formats that content (titles, commit messages, URLs) for reporting and optional LLM summarization, so the agent will read and interpret untrusted third-party content.
Audit Metadata