mole-mac-cleanup

Warn

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: MEDIUMCOMMAND_EXECUTIONREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The mo touchid command modifies the system's /etc/pam.d/sudo configuration file. This is a security-sensitive operation that alters the authentication mechanism for administrative privileges on the host system.
  • [REMOTE_CODE_EXECUTION]: The mo update command allows the tool to download and execute code updates directly from its GitHub repository (tw93/Mole), which introduces a potential vector for remote code execution from a third-party source.
  • [COMMAND_EXECUTION]: The skill exposes commands such as mo clean and mo optimize that perform deep system-level modifications, including clearing system caches, resetting network services, and purging log files, which may impact system stability.
  • [EXTERNAL_DOWNLOADS]: The skill instructions involve downloading and installing a third-party binary via the Homebrew package manager during the setup phase.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 21, 2026, 12:50 AM