Context-Inappropriate Capability
Medium
- Confidence
- 95% confidence
- Finding
- The skill repeatedly claims to be instruction-only and local-only, but later includes an integration path to commit provenance proofs to an external audit chain. Even though described as optional and caller-performed, this contradicts the privacy and locality guarantees and can mislead operators into enabling outbound data flows they did not expect.
