jenkins
Warn
Audited by Snyk on Jul 31, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 0.70). The skill recommends mounting the host Docker socket and running privileged containers (hostPath /var/run/docker.sock and privileged: true) and includes script access to Jenkins.instance for plugin installation—configurations that enable host-level compromise even though it doesn't ask for sudo or create system users directly.
Issues (1)
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata