arize-instrumentation-health

Warn

Audited by Snyk on Aug 5, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (medium risk: 0.30). [The workflow ingests and reads the project’s exported trace/spans (span attributes like input.value/output.value) via the arize-trace bounded export step, and those span attributes can include outsider-authored free text from the app/user inputs that are carried into trace data.]

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 5, 2026, 11:06 PM
Issues
1
Security Audit — snyk — arize-instrumentation-health