T09 · Insecure Skill Coding Practices
- Location
SKILL.md:38- Finding
Persistent State Writes Are Not Declared in the Capability Manifest
- Content
View full analysis
.md` (per the [entity-geo handoff schema](../../../references/entity-geo-handoff-schema.md)) to populate `display_name`, `description_short`, `ai_resolution_status` and decide whether disambiguation boilerplate is needed. If the profile is missing or stale (>90 days), declare `DONE_WITH_CONCERNS` and recommend `entity-registry` as an open loop. - **Writes**: a user-facing content, metadata, or schema deliverable plus a reusable summary that can be stored under `memory/content/`. - **Promotes**: approved angles, messaging choices, missing evidence, and publish blockers to `memory/hot-cache.md` and `memory/open-loops.md`; propose durable decisions as pending-decision items. ``` `SKILL.md:82-84`: ```markdown ## Save Results On user confirmation, save to `memory/content/YYYY-MM-DD-.md` — see [Skill Contract](../../../references/skill-contract.md) §Save Results Template. ``` ### Technical Analysis The package manifest declares only `inline-delivery` and `canonical-state-read`. The Skill instructions nevertheless describe writes to: - `memory/content/` - `memory/hot-cache.md` - `memory/open-loops.md` This creates a discrepancy between the package's declared capability ceiling and its documente ...[truncated 2294 chars]- Remediation
View remediation
