github-mcp-server
Warn
Audited by Snyk on Mar 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). This skill's SKILL.md documents GitHub MCP tools like get_file_contents, search_code, list_issues, list_discussions and related calls that fetch and read content from public GitHub repositories, issues, discussions, and gists (github.com), allowing untrusted, user-generated third‑party content to be ingested and potentially influence agent actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata