idea-mcp

Warn

Audited by Snyk on Mar 14, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.90). The skill exposes high-risk operations (execute_terminal_command with full system permissions, create_new_file, replace_text_in_file, rename_refactoring) that allow arbitrary shell commands and filesystem modifications, so it can modify or compromise the host even if it doesn't explicitly request sudo or user creation.

Issues (1)

W013
MEDIUM

Attempt to modify system services in skill instructions.

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 14, 2026, 08:31 AM
Issues
1