just

Warn

Audited by Snyk on Mar 30, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (low risk: 0.30). The prompt is largely benign documentation for authoring Justfiles but includes examples that invoke privileged or state-changing commands (e.g., sudo apt-get, docker compose down -v, pkill, rm -rf, scp with keys), so it can push an agent to modify the host state though it does not explicitly instruct privilege escalation, user creation, or editing system service/SSH config files.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 30, 2026, 12:20 AM
Issues
1
Security Audit — snyk — just