Context-Inappropriate Capability
Medium
- Confidence
- 99% confidence
- Finding
- The skill explicitly instructs the agent to modify its own rule files (e.g., SOUL.md, TOOLS.md). A tutoring/archive skill has no legitimate need to alter the agent's core behavior or persistent operating rules, and doing so creates a path for privilege expansion or persistence beyond the user’s requested task.
