mirror of
https://github.com/github/codeql.git
synced 2026-05-19 21:57:13 +02:00
This pull request introduces a new CodeQL query for detecting prompt injection vulnerabilities in Python code targeting AI prompting APIs such as agents and openai. The changes includes a new experimental query, new taint flow and type models, a customizable dataflow configuration, documentation, and comprehensive test coverage.
2 lines
111 B
Plaintext
2 lines
111 B
Plaintext
query: experimental/Security/CWE-1427/PromptInjection.ql
|
|
postprocess: utils/test/InlineExpectationsTestQuery.ql |