Description-Behavior Mismatch
Medium
- Confidence
- 94% confidence
- Finding
- The script automatically installs Python packages at runtime using uv or pip, which changes the local system state and pulls executable code from external package sources without explicit user approval. In a skill intended for login and workflow automation, this expands capability beyond the declared business function and increases supply-chain and environment-tampering risk if package sources, versions, or indexes are compromised.
