alibabacloud-cli-guidance
Warn
Audited by Snyk on Mar 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.90). The skill instructs users to run an installation command that fetches and executes remote shell code at runtime ("/bin/bash -c "$(curl -fsSL https://aliyuncli.alicdn.com/setup.sh)\""), meaning the URL https://aliyuncli.alicdn.com/setup.sh is used to fetch and run remote code as a required installation path.
Issues (1)
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata