pilot-dataset
Warn
Audited by Snyk on Jun 24, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required runtime workflow uses
pilotctl --json send-message/send-fileto exchange dataset metadata and files with a peer, so the agent will ingest free-form dataset content/metadata originating from an OUTSIDER peer (e.g., the publisher’s dataset schema/rows and file body) into the LLM context for processing/validation.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata