pr-sync

Warn

Audited by Snyk on Mar 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (medium risk: 0.40). The skill explicitly instructs bypassing a repository security gate via CLAUDE_GATE_BYPASS=1 (and allows force-with-lease in a review loop), which is a security-mechanism bypass even though it does not request sudo, modify system-level files, or create users.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 29, 2026, 05:28 PM
Issues
1