wrap-up-session

Warn

Audited by Snyk on May 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.70). This skill directs the agent to execute git commits/pushes, edit project and home files (e.g., ~/.claude/*), and run arbitrary sync/deploy commands from project docs (examples include rsync and pm2 restart), which will change the machine's state and could run privileged or system-altering actions even though it does not explicitly request sudo or create users.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 4, 2026, 05:20 AM
Issues
1