reveal-3d

Warn

Audited by Snyk on May 4, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.90). This skill instructs the agent to run package installs that may require elevated sandbox permissions and explicitly tells the agent to pass required_permissions: ["all"] in Shell tool calls to bypass sandbox restrictions (i.e., request full privileges), which is an instruction to escalate permissions and thus a security risk.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
May 4, 2026, 06:30 AM
Issues
1