resolve-pr-comments

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The workflow explicitly fetches and lists PR review threads using the pull-request-tool (via pr-url or repo/pr-number) and then reads and interprets reviewers' comments and thread context—which are user-generated/untrusted content from public GitHub PRs—so it consumes third-party content as part of its workflow.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 09:04 AM