byted-sol-stability-grafana-metric-explorer
Warn
Audited by Snyk on Jul 14, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). At runtime, the required workflow reads outsider-authored free text from the provided
--arch-modeldirectory files (e.g.,core-links.md,dependency-risk.md,observability-gaps.md) viaload_arch_model()and passes their contents into the LLM context throughnormalize_inputs()→Pipeline.run_pipeline()(no LLM call is shown here, but the data is explicitly ingested as text for downstream generation).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata