This still falls within the 3L security model though. A program can only do that if you, the user, allows it.
Also, 3L runs in two modes: development or secure. In secure mode you can completely disable manipulation of source code (or strip it out) and mark all code as read only and have the system verify the code hasn't been modified when it is run.