claude-code-coding-agent

Warn

Audited by Snyk on Apr 8, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.80). The prompt repeatedly includes and demonstrates privileged flags like "--permission-mode bypassPermissions" and mentions "--dangerously-skip-permissions", which encourage bypassing permission/security controls and therefore pose a significant risk of compromising the host even though it doesn't explicitly instruct sudo, file edits, or user creation.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 8, 2026, 09:24 AM
Issues
1