pipefy-automations

Warn

Audited by Snyk on Aug 21, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). In SKILL.md, the runtime workflow for Pipefy “AI automations (prompt-driven)” ingests user-authored free text only as the explicitly provided prompt argument to validate_ai_automation_prompt / create_ai_automation, and it does not read any outsider-posted content from a public queue/feed without the user selecting it.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 21, 2026, 07:08 PM
Issues
1
Security Audit — snyk — pipefy-automations