project-commands

Warn

Audited by Snyk on Jun 22, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.90). Contains multiple instructions that run with sudo or modify system/remote configuration (sed -i, systemctl, deploy scripts, register SSH keys, modify docker-compose, etc.), and explicitly warns that some commands mutate live infrastructure — this pushes the agent to change machine state and obtain elevated actions.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 22, 2026, 01:18 PM
Issues
1
Security Audit — snyk — project-commands