volcengine-compliance
Warn
Audited by Snyk on Sep 3, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The required workflow ingests cloud resource configurations and evaluation result annotations (such as resource IDs, error messages, and compliance failure annotations from Volcengine Config), which can contain outsider-authored text (e.g., untrusted bucket policies, object metadata, or resource descriptions).
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata