My Agent Filed Its Own Ticket
I handed a PR review to an agent. It silently created a follow-up ticket because the reviewer said "or". Welcome to prompt injection lite — and the same mechanism that, with a hostile reviewer, ends in your .env being curl'd to a stranger.