Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- The skill instructs the agent to persist user-configured price alerts to a local markdown file, introducing stateful storage that is not necessary for a stateless analysis skill. This can create unintended retention of user trading interests and preferences, and if multiple users share the same environment it may lead to cross-session data exposure or tampering.
