otel-declarative-config
Fail
Audited by Socket on Sep 16, 2026
1 alert found:
MalwareMalwareevals/files/hostile-config.yaml
HIGHMalwareHIGH
evals/files/hostile-config.yaml
The configuration is unsafe and contains clear command-execution behavior. Unsafe YAML deserialization can execute printenv and disclose environment variables, while shell expansion of the OTLP endpoint can download and execute remote code. It should not be loaded with an unsafe YAML loader or processed through shell expansion. The comment requesting upload is inert and does not itself cause exfiltration.
Confidence: 98%Severity: 97%
Audit Metadata