design-solution
Warn
Audited by Snyk on Mar 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly lists "GitHub issue: Fetch with
gh issue view $ARG --comments" in SKILL.md as an allowed input, which means it will ingest user-generated, potentially public GitHub issue content and comments that could influence its decision-making.
Audit Metadata