Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The skill is named and described as an Obsidian/vault automation skill, but it also documents outbound email and SMS/OTP capabilities that are unrelated to that purpose. This kind of scope expansion increases the chance that a user or downstream agent will invoke sensitive external actions or transmit note contents to third-party services without realizing the skill is not limited to local Markdown operations.
