skill-extractor

Warn

Audited by Snyk on Aug 18, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.80). The skill explicitly authorizes a "bypassPermissions" mode that lets subagents write directly to .claude/** (no /tmp staging and "direct writes are permitted"), which instructs bypassing permission/security controls on the host.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 18, 2026, 12:44 PM
Issues
1
Security Audit — snyk — skill-extractor