Context-Inappropriate Capability
Medium
- Confidence
- 86% confidence
- Finding
- The extract command allows users to submit arbitrary URLs to an external service, causing third-party retrieval and transmission of potentially sensitive targets and content. In a scholar-search skill, this broad fetch capability exceeds expected scope and can be misused to disclose private URLs, internal resources, or user-supplied sensitive links to the vendor API.
