code-sync
Warn
Audited by Snyk on Mar 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.90). The skill's Pull workflow in SKILL.md requires running scripts/scan.sh --fetch (and the Exception Handling step runs git log HEAD..@{u}) which fetches and ingests data (commit messages/refs and remote URLs) from arbitrary remote git repositories (third-party user-generated content) and uses that content to explain divergences and decide actions.
Audit Metadata