Missing User Warnings
High
- Confidence
- 98% confidence
- Finding
- The script launches multiple AI coding CLIs with explicit safety-bypass flags such as --dangerously-skip-permissions, -y, and --yolo, allowing autonomous file modifications and other actions without interactive approval. In this context, the risk is amplified because the prompt file contents are fully injected into the agent and execution occurs inside a supplied workspace, so a malicious or compromised prompt can drive unchecked changes, destructive edits, or data exposure in that directory.
