hook-creator
Warn
Audited by Snyk on Mar 5, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W013: Attempt to modify system services in skill instructions.
- Attempt to modify system services in skill instructions detected (high risk: 0.80). The skill explicitly enables running arbitrary shell commands from hooks, including auto-approving/bypassing permission requests and performing environment/install/config actions, which can change the machine state and circumvent safeguards.
Audit Metadata