pipefy-automations
Warn
Audited by Snyk on Aug 21, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (low risk: 0.10). In SKILL.md, the runtime workflow for Pipefy “AI automations (prompt-driven)” ingests user-authored free text only as the explicitly provided
promptargument tovalidate_ai_automation_prompt/create_ai_automation, and it does not read any outsider-posted content from a public queue/feed without the user selecting it.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata