Context-Inappropriate Capability
Medium
- Confidence
- 90% confidence
- Finding
- The skill is nominally about JSON editing, but it instructs users to make live outbound API calls to third-party providers to enumerate models. That expands the skill's operational scope, can cause unreviewed network egress, and encourages use of bearer tokens in shell commands where they may be exposed via history, logs, or operator misuse.
