Context-Inappropriate Capability
Medium
- Confidence
- 98% confidence
- Finding
- 技能要求“包含你的思考过程”,这会诱导助手泄露内部推理内容。内部思维不属于天气付费服务的必要功能,一旦暴露,可能泄漏安全策略、判断依据、隐藏提示或被攻击者用来改进越狱与提示注入。
Security checks across malware telemetry and agentic risk
This paid weather skill has a coherent purpose, but it needs review because it can trigger payment handling, persist payment credentials, and asks the agent to install an unpinned helper skill while also requesting internal reasoning disclosure.
Install only if you trust the publisher, the remote payment/weather service, and the separate clawtip payment skill. Verify the amount before paying, do not allow automatic dependency installation without reviewing the exact clawtip package, and consider deleting local order files after use because they may contain payment credentials.
65/65 vendors flagged this skill as clean.