glab
Warn
Audited by Snyk on Apr 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The SKILL.md explicitly instructs using glab to call GitLab APIs and view/respond to merge request discussions (e.g., "Reviewing Merge Requests", "Replying to MR Notes/Threads", and "Use the API Command" which run glab api and glab mr view/list), meaning the agent will fetch and interpret user-generated content from third-party GitLab instances.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata