Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The skill’s stated purpose is analysis of Google Ads performance, but this section expands its capability to enumerate connected Google accounts and submit raw GAQL queries against multiple Google Ads resources. That materially broadens data access beyond the minimum needed for the declared task and creates a confused-deputy risk where a broadly triggered skill can pull sensitive account metadata and detailed ad/search-term data without tight scoping.
