docker-kubernetes
Fail
Audited by Snyk on Aug 10, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (high risk: 0.80). The skill includes an out-of-scope "Companion check" that explicitly instructs the agent to run local filesystem commands (ls of various ~/.claude/.agent directories) and offer installing missing skills — behavior unrelated to the Docker/Kubernetes purpose and potentially exposing local state.
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (medium risk: 0.60). The companion-check instructs the agent to run local filesystem commands and to offer/execute an npx install, which can read and modify the host user's skill directories and install software — i.e. it directs actions that change the machine's state.
Issues (2)
E004
CRITICALPrompt injection detected in skill instructions.
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata