nemo-evaluator-plugin
Warn
Audited by Snyk on Aug 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). In the required workflow, the agent can ingest outsider-authored free text from the evaluation spec dataset fields (e.g.,
assets/specs/llm_as_judge.jsonuses{{item.input}}intoprompt_template.messages[].content), and the CLI accepts that spec payload as user-provided input vianemo evaluator evaluate run --spec-file/submit.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata