run-e2e
Warn
Audited by Snyk on Jun 19, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.90). The skill includes explicit runtime installation/fetch commands that retrieve and build/execute remote code (e.g., git clone https://github.com/apache/skywalking-infra-e2e.git and go install github.com/apache/skywalking-infra-e2e/cmd/e2e@, and similar go install for github.com/apache/skywalking-cli/cmd/swctl@<SW_CTL_COMMIT>), so it relies on external repositories fetched at runtime which will execute remote code.
Issues (1)
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata