ce-work-beta
Fail
Audited by Snyk on Jun 23, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E006: Malicious code pattern detected in skill scripts.
- Malicious code pattern detected (high risk: 0.90). The skill contains explicit delegation to an external Codex CLI that sends repository content and runs background shell invocations — including a recommended "--dangerously-bypass-approvals-and-sandbox" mode and automatic consent persistence — which enables remote code execution and easy exfiltration of repo/environment data and therefore represents a high risk for abuse.
Issues (1)
E006
CRITICALMalicious code pattern detected in skill scripts.
Audit Metadata