pipeline-migration
Warn
Audited by Snyk on Jun 18, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.85). The required runtime workflow performs Synapse→Fabric migration by calling Synapse Data-Plane APIs to fetch pipeline definitions (including outsider-authored activity JSON such as
SynapseNotebookreferences and other activity properties) and then injects that retrieved prose/JSON into the agent’s LLM context for transformation; this is outsider content authored by other parties in the Synapse workspace.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata