Context-Inappropriate Capability
Medium
- Confidence
- 90% confidence
- Finding
- The skill directs the agent to invoke Shell/Python and external utilities like python-docx, textract, or antiword on a user-supplied document path. That expands the skill from passive review into code/tool execution on untrusted input, increasing the attack surface for command/path misuse, unsafe file access, dependency abuse, and unintended processing beyond what is necessary for report review.
