entire

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (medium risk: 0.60). The skill instructs running commands that modify repository state (install hooks, create/delete branches, reset shadow branches) and explicitly appends to the user's SSH known_hosts (~/.ssh/known_hosts), which changes the machine's state and SSH configuration (though it does not request sudo or create users).
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 02:53 AM