git-issue-hierarchy
Warn
Audited by Snyk on Apr 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill explicitly reads and parses user-generated GitHub issue content (e.g., "gh issue view $N --json body --jq '.body'" and "gh api repos/.../issues/.../sub_issues") and then uses those bodies to build dependency graphs and to edit issue bodies, so untrusted third-party issue text can influence automated actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata