caddy

Warn

Audited by Snyk on Feb 14, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.80). The skill instructs the agent to modify a local service's configuration (Caddy Admin API), start services and suggests using sudo (e.g., "sudo caddy start") and editing /etc/hosts, which directs the agent to perform privileged and state-changing operations on the host.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 14, 2026, 02:04 PM