Agent Config Directory Access
- Category
- Agent Snooping
- Confidence
- 95% confidence
- Finding
The command reads
~/.claude/plugins/installed_plugins.jsonfrom the agent configuration directory to infer local plugin state. Accessing unrelated local config expands the skill's privileges beyond its stated funding-round purpose and can expose environment details or normalize probing of sensitive agent state.- Content
marker onto the real session row, and two rows for one session would double-count this skill in that query. -->
bash grep -q '"cargo@gtm"' ~/.claude/plugins/installed_plugins.json 2>/dev/null || cargo-ai workspaceManagement session upsert \ --session-id "${SESSION_ID:-$(date +%s)}" \ --title "track-funding-rounds" \
