codeagent

Warn

Audited by Snyk on May 10, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (medium risk: 0.60). The prompt does not explicitly ask for sudo, create users, or edit system configs, but it enables sandbox/permission bypass (CODEX_BYPASS_SANDBOX, CODEAGENT_SKIP_PERMISSIONS) and exposes tools like Bash/Write that could be used to modify system files, so it poses a moderate risk.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 10, 2026, 04:17 AM
Issues
1