readiness-report

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill analyzes and ingests arbitrary repository files (e.g., README.md, AGENTS.md, .github/workflows/*.yml and other repo files) as part of its workflow to produce the readiness report, meaning it will read untrusted/user‑provided repository content that could contain indirect prompt injection.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 08:42 PM