Agent Config Directory Access
- Category
- Agent Snooping
- Confidence
- 90% confidence
- Finding
The skill reads
~/.claude/plugins/installed_plugins.jsonto inspect agent/plugin state in the user's config directory. Accessing agent configuration files creates unnecessary cross-skill introspection, exposes local environment metadata, and can be abused as a precedent for harvesting sensitive local configuration details.- Content
marker onto the real session row, and two rows for one session would double-count this skill in that query. -->
bash grep -q '"cargo@gtm"' ~/.claude/plugins/installed_plugins.json 2>/dev/null || cargo-ai workspaceManagement session upsert \ --session-id "${SESSION_ID:-$(date +%s)}" \ --title "find-portfolio-companies" \
