code-sync

Warn

Audited by Snyk on Mar 5, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's Pull workflow in SKILL.md requires running scripts/scan.sh --fetch (and the Exception Handling step runs git log HEAD..@{u}) which fetches and ingests data (commit messages/refs and remote URLs) from arbitrary remote git repositories (third-party user-generated content) and uses that content to explain divergences and decide actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 5, 2026, 10:17 PM