ops-inspector
Warn
Audited by Snyk on Aug 11, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The skill’s runtime uses user-provided query parameters to call
queryLogs(action="searchLogs", ...)andqueryFunctions(action="listFunctionLogs", ...)to ingest log text and error messages from the tenant’s CLS/system logs into the LLM for inspection, so an outsider can supply free text via the workflow’s search/query inputs (indirect prompt injection through stored logs or injected search terms).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata