design-solution

Warn

Audited by Snyk on Mar 11, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill explicitly lists "GitHub issue: Fetch with gh issue view $ARG --comments" in SKILL.md as an allowed input, which means it will ingest user-generated, potentially public GitHub issue content and comments that could influence its decision-making.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 11, 2026, 04:39 AM