neo-team-claude

Warn

Audited by Snyk on Mar 19, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (medium risk: 0.60). The skill does not explicitly instruct creating users, editing systemctl/ssh, or requesting sudo, but it repeatedly spawns "general-purpose" subagents with full toolsets (including bash/edit) and allows live system investigation without strict privilege constraints, creating a meaningful risk that agents could modify system-level files or escalate privileges — moderate risk.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 19, 2026, 10:02 AM
Issues
1