SNOW-AF-06: Inline Agent Tool Script Without Record ACL
๐ด High ยท ServiceNow Action Fabric
Detects inline sn_aia_tool scripts that query or change records with GlideRecord (which skips ACLs) or with an LLM-supplied sys_id/number and no canRead, canWrite, or role check, so the agent can read or change rows the user should not see. High; critical when the script deletes or writes a sensitive table. This is the agent-tool rule; SNOW-28.2 stays the generic check.
Detailsโ
| Field | Value |
|---|---|
| Rule ID | SNOW-AF-06 |
| Severity | High |
| Category | ServiceNow Action Fabric |
Remediationโ
Use GlideRecordSecure (or an explicit canRead/canWrite/gs.hasRole check) in the sn_aia_tool script, do not take the record key only from the model, and return only fields the caller is allowed to see.