selinux-knowledge-patch

Warn

Audited by Snyk on Apr 7, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 1.00). The skill explicitly instructs loading and removing SELinux CIL modules (semodule -i / -r), generating and installing container policies (udica + semodule), and running containers with custom security labels—actions that modify kernel/SElinux policy and require elevated (sudo/root) privileges, so it does push the agent to change the machine state.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 7, 2026, 06:16 AM
Issues
1
Security Audit — snyk — selinux-knowledge-patch