resolve-pr-comments
Warn
Audited by Snyk on Feb 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 1.00). The workflow explicitly fetches and lists PR review threads using the pull-request-tool (via pr-url or repo/pr-number) and then reads and interprets reviewers' comments and thread context—which are user-generated/untrusted content from public GitHub PRs—so it consumes third-party content as part of its workflow.
Audit Metadata