tool-design

Warn

Audited by Snyk on Feb 16, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W013: Attempt to modify system services in skill instructions.

  • Attempt to modify system services in skill instructions detected (high risk: 0.80). The skill explicitly advocates giving agents direct file-system and command-execution access ("single command execution tool" and using Unix utilities to "operate on your system"), which strongly enables actions that can modify system files, services, or create accounts even though it doesn't explicitly mention sudo or user creation.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 16, 2026, 01:12 AM