Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The guide explicitly instructs the agent to retrieve `window.localStorage.getItem('user_token')`, which is an authentication secret rather than ordinary debugging data. In a browser-control skill, this turns the tool into a credential-access mechanism and can expose bearer tokens that enable account takeover or API abuse far beyond the stated debugging need.
