codeagent
Warn
Audited by Snyk on Mar 10, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 0.90). The prompt explicitly exposes a mechanism to bypass permission checks (e.g., --dangerously-skip-permissions and CODEAGENT_SKIP_PERMISSIONS) which enables the agent to evade security prompts and perform privileged or state-changing operations, so it poses a high risk of compromising the machine state.
Audit Metadata