Mod safety essentials
Levels describe capabilities
- L0: No reads, writes, execution or networking detected; usually rendering and in-memory state.
- L1: Reads files or environment variables.
- L2: Writes files, runs commands, registers tools or submits prompts.
- L3: Uses the network or calls a model.
The highest level determines the badge. A networked HUD can be L3; a simple-looking notifier may execute shell commands.
Scan limits
The scanner never runs plugins. It examines source text and local dependencies. Dynamic properties, aliases, bundled code, branches and third-party packages can change actual behavior. Uninspectable external dependencies make the scan incomplete and require manual review.
Four questions before installing
- Which files does it read? Can it access credentials?
- What does it write? Can you undo those changes?
- Which commands does it run? Where do arguments come from?
- Which service does it contact? Does it send code or conversations?
Try it in an isolated directory and keep backups. A low level or an approved review is not a safety guarantee.