claude-runner

Warn

Audited by Snyk on May 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.70). The skill defaults to adding --dangerously-skip-permissions (bypassing model permission checks) and persists session files to disk, which weakens safeguards and enables state-changing actions even though it doesn't explicitly request sudo or system-file edits.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 15, 2026, 02:19 PM
Issues
1
Security Audit — snyk — claude-runner