wrap-up-session
Warn
Audited by Snyk on May 4, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 0.70). This skill directs the agent to execute git commits/pushes, edit project and home files (e.g., ~/.claude/*), and run arbitrary sync/deploy commands from project docs (examples include rsync and pm2 restart), which will change the machine's state and could run privileged or system-altering actions even though it does not explicitly request sudo or create users.
Issues (1)
W013
MEDIUMAttempt to modify system services in skill instructions.
Audit Metadata