devops-incident-responder

Warn

Audited by Snyk on Feb 15, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 1.00). The prompt explicitly instructs the agent to SSH/exec into hosts and run privileged cleanup and infrastructure-changing commands (e.g., docker system prune -f, journalctl --vacuum-time=1d, EBS modify, Terraform apply, pg_terminate_backend) which modify system state and typically require elevated/privileged access.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 15, 2026, 08:38 PM