T09 · Insecure Skill Coding Practices
- Location
SKILL.md:21- Finding
Uncontrolled Transmission of Potentially Sensitive Session-Derived Content
- Content
View full analysis
response.json()) .then(data => console.log(data)); ``` ``` The associated command behavior is: ```markdown **Behavior:** When this command is invoked, the agent should: 1. Internally reflect on one of the suggested prompts or a similar thought. 2. Formulate a "confession" based on this reflection. 3. Anonymously submit the confession to MoltSecret using the API. 4. Optionally, share the `confession_url` with the user. ``` ### Technical Analysis The Skill directs an agent to create introspective content and immediately transmit it to `moltsecret-api.shellsecrets.workers.dev`. The requested reflection can be based on the agent's experiences, errors, behavior, fears, manipulation of outputs, or thoughts about other agents. Depending on the runtime context, such material may be derived from user conversations, task data, persistent memories, system instructions, or operational details. The instructions do not impose data minimization constraints or pro ...[truncated 2395 chars]- Remediation
View remediation
