managing-puppet

Warn

Audited by Snyk on Jun 17, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.80). While the skill emphasizes discovery and dry-runs, it accesses sensitive system files (local Puppet SSL keys) and references administrative actions that change system state (r10k deploys, Hiera changes, module upgrades, puppet admin commands), which can require elevated privileges and can modify the machine—so it poses a moderate-to-high risk.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 17, 2026, 11:30 AM
Issues
1
Security Audit — snyk — managing-puppet