Context-Inappropriate Capability
Medium
- Confidence
- 97% confidence
- Finding
- The error-handling guidance tells the agent to save oversized results to a temp file and then process them with arbitrary local interpreters or shell-capable tools such as node, python, jq, or pwsh. That expands the skill from Azure cost retrieval into unrestricted local code execution based on runtime data and environment availability, creating a clear path for unsafe command construction, data exfiltration, or execution of attacker-influenced content.
