lsp-code-analysis
Warn
Audited by Snyk on Feb 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). scripts/update.sh fetches release metadata from the public GitHub API and downloads a release ZIP from https://github.com/lsp-client/lsp-skill/releases/latest/download/lsp-code-analysis.zip, which the skill instructs you to run and install, so the agent would consume third‑party public GitHub content that could be untrusted.
Audit Metadata