project-discipline-guides

Fail

Audited by Snyk on Aug 22, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 0.90). The repository includes a script that deliberately loads local .env data (when available), spawns external LLM CLI processes with flags that bypass permission/trust checks, and feeds local prompt/content into those CLIs—behavior that can leak sensitive environment variables and local content to external services and enables remote code execution via spawned binaries.

Issues (1)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Aug 22, 2026, 05:57 PM
Issues
1
Security Audit — snyk — project-discipline-guides