auto-orchestrator

Warn

Audited by Snyk on Apr 5, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (low risk: 0.30). The prompt enables spawning Bash/background agents and even requires "bypassPermissions" or auto-approved tools for background agents (encouraging elevated/privileged execution), which can be used to modify the host state, but it does not itself instruct creating users, editing system-level files, or requesting sudo—so the risk is present but not explicit.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 5, 2026, 08:07 PM
Issues
1
Security Audit — snyk — auto-orchestrator