devops

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.90). The skill explicitly includes instructions to modify SSH configuration and operational user accounts (e.g., "PermitRootLogin", authorized_keys restrictions, and a restricted ops user like devops-bot), and it permits planning and executing system-level changes (service, bootstrap, and backup operations) — actions that modify machine state even though gated by approval, so it does push the agent toward making privileged/system changes.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 02:43 AM