deploy-server

Warn

Audited by Snyk on Jul 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill explicitly instructs the agent to connect (defaulting to root), copy/sync files to a remote host, run docker-compose/make on the remote, docker cp/exec to modify container-mounted files and reload services (and even auto-accept host keys), which clearly changes the machine's state and bypasses a security check.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 16, 2026, 09:03 AM
Issues
1
Security Audit — snyk — deploy-server