finetuning
Warn
Audited by Snyk on Aug 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). Outsider-authored free text is ingested only from user-provided/local JSONL files into scripts like
scripts/calibrate_grader.py(it readsargs.dataJSONL lines and feedsmessages[-1]["content"]plus model outputs to the grader), but there is no external “publish/queue/feed” path that the workflow automatically fetches outsider content from at runtime.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata